Gitea RCE CVE-2026-60004: Critical Vulnerability Actively Exploited
Gitea RCE CVE-2026-60004 (CVSS 9.8) is actively exploited. Attackers can execute shell commands via the diffpatch endpoint.
Categories
/blog/en/category/notes
5 posts
Gitea RCE CVE-2026-60004 (CVSS 9.8) is actively exploited. Attackers can execute shell commands via the diffpatch endpoint.
A supply chain attack targeted popular crates on crates.io including arrayref, append-only-vec, and internment.
Next.js 16.3 released with major features: Instant Navigations, 90% less memory, 5.5x faster builds, and TypeScript 7 support.
Tips and tricks for developer productivity when working remotely.
Reasons for choosing self-hosting for personal projects.