CVE-2026-60004: Gitea Code Injection Under Active Exploitation
CISA confirms active exploitation of CVE-2026-60004, a Gitea code injection vulnerability allowing shell command execution with repository write access.
- Attackers are actively exploiting Gitea via CVE-2026-60004, enabling shell command execution through code injection.
- Gitea instances are vulnerable if attackers have repository write access, allowing compromise of the service account.
- Immediately apply vendor-specific mitigations and patches to secure all Gitea instances against this critical flaw.