Skip to main content
CyberSingle-sourceMediumDeveloping
5.5

CISA confirms active exploitation of Gitea remote code execution vulnerability CVE-2026-60004

CISA has added CVE-2026-60004, a remote code execution flaw in Gitea, to its Known Exploited Vulnerabilities catalog. While a patch was released in version 1.27.1 in late July, the confirmation of active exploitation necessitates immediate remediation for organizations utilizing the platform.

SecurityWeekabout 17 hours agoUSengCredibility 59%View source

Score Breakdown

Mosaic Score5.5
Confidence0.9
Significance0.5
Source credibility0.6

Intelligence Tags

Entities

country
Source

Related signals

8 found