Critical Gitea Vulnerability CVE-2026-60004 Actively Exploited
ID: 96a018d6-d8a2-5b32-9e9b-a6b5ec24a80c
STIX ID: report--96a018d6-d8a2-5b32-9e9b-a6b5ec24a80c
Feed Name: ThreatCluster
Threat Score
A critical Gitea remote code execution vulnerability (CVE-2026-60004) is being actively exploited to run arbitrary shell commands and install cryptocurrency miners on vulnerable, self-hosted instances; CISA added the issue to its KEV catalog and set a federal mitigation deadline (August 28, 2026), and Gitea released version 1.27.1 on July 27, 2026 to address the flaw. The report also references earlier exploitation of CVE-2026-20896 in July 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
