Skip to content

CVE-2026-58426

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
July 4, 2026
Last Seen
July 5, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

CVE-2026-58426, published on July 3, 2026, reveals a critical vulnerability in Gitea Actions Artifacts V4. This flaw allows attackers to exploit HMAC ambiguities in signed URLs, enabling unauthorized cross-repository artifact reads and task state modifications. The vulnerability has been assigned a...

Public Exploits

Checking GitHub for proof-of-concept code…