Critical Gitea Arbitrary File Read Vulnerability Enables Remote Code Execution Attacks

A critical security flaw in Gitea, tracked as CVE-2026-59774, allows unauthenticated remote attackers to read arbitrary files from vulnerable servers and potentially escalate the attack to remote code execution. The issue affects Gitea versions from 1.22.1 through 1.27.0 and is fixed in version 1.27.1. The vulnerability is documented as GHSA-6v53-hr58-556r and carries a Critical severity […]

This article has been indexed from Cyber Security News

Read the original article: