Curated Cyber Threat Intelligence

Threat Feed

Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.

scheduleUpdated 2026-09-04 · 02:17 UTC
articleTotal: 1172 reports

Filtered Reports

5 / 14 results
Active filter:vendor: gitea✕ clear
8,300+ Gitea servers unpatched against exploited RCE flaw CVE-2026-60004criticalbug_reportVulnerability
bug_reportVulnerability

8,300+ Gitea servers unpatched against exploited RCE flaw CVE-2026-60004

Gitea versions prior to 1.27.1. Over 8,300 Internet-exposed instances remain vulnerable. Affects self-hosted Gitea installations with default open registration enabled.

Gitea28 Aug · 10:58 UTC
Gitea CVE-2026-60004 RCE exploited in wild; CISA orders 3-day patchcriticalbug_reportVulnerability
bug_reportVulnerability

Gitea CVE-2026-60004 RCE exploited in wild; CISA orders 3-day patch

Gitea self-hosted Git service versions prior to 1.27.1. Approximately 5,000 instances exposed online. Default configurations with self-registration enabled are exploitable by unauthenticated attackers.

Gitea26 Aug · 09:07 UTC
Gitea CVE-2026-59774: Unauthenticated file read via Org-mode markupcriticalbug_reportVulnerability
bug_reportVulnerability

Gitea CVE-2026-59774: Unauthenticated file read via Org-mode markup

Gitea versions 1.22.1 through 1.27.0. Self-hosted instances with public repositories and Org-mode rendering enabled are vulnerable. Gitea Cloud instances upgraded automatically. Fixed in version 1.27.1.

CVE-2026-597745 Aug · 09:04 UTC
Gitea Docker auth bypass under active probing (CVE-2026-20896)criticalbug_reportVulnerability
bug_reportVulnerability

Gitea Docker auth bypass under active probing (CVE-2026-20896)

Gitea Docker images with improper X-WEBAUTH-USER header validation. Specific vulnerable versions not provided; affects deployments trusting reverse proxy authentication headers without IP restrictions.

CVE-2026-208966 Jul · 14:28 UTC
Gitea auth bypass exposes private container images to unauthenticated usershighbug_reportVulnerability
bug_reportVulnerability

Gitea auth bypass exposes private container images to unauthenticated users

Gitea versions prior to 1.26.2. All deployments using Gitea's container registry feature are affected. Unauthenticated remote attackers can pull private container images without credentials.

CVE-2026-2777127 May · 08:06 UTC