CyberNotableConfirmedDeveloping
7.0
CISA confirms active exploitation of critical Gitea code injection vulnerability
BleepingComputer·US·about 9 hours ago
CISA has added CVE-2026-60004, a remote code execution flaw in Gitea, to its Known Exploited Vulnerabilities catalog. While a patch was released in version 1.27.1 in late July, the confirmation of active exploitation necessitates immediate remediation for organizations utilizing the platform.