Gitea — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
12
occurrences
First Seen
April 28, 2026
Last Seen
July 8, 2026

Gitea is a technology platform tracked across 6 threat clusters and 12 intelligence report mentions on ThreatCluster. First observed April 28, 2026; most recent activity July 8, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Mondoo Vulnerability Intelligence — mondoo.com · July 8, 2026
  • CVE-2026-58426 - Gitea Actions Artifacts V4 signed URL HMAC ambiguity allows cross-repository artifact read and cross-task upload-state write Latest Vulnerabilities / 1d CVE ID : CVE-2026-58426 Published : July 3, 2026, 8:54 p.m. 3 hours, 25 minutes ago Description : Gitea Actions Artifacts V4 signed URL HMAC ambiguity allows cross-repository artifact read and cross-task upload-state write Severity: 0.0 NA Visit the link for more details, such as CVSS details, affected products, timeline, and mo — cvefeed.io · July 5, 2026
  • CVE-2026-58426 - Exploits & Severity — Feedly · July 4, 2026
  • Risky Bulletin: Researcher drops giant cache of zero — News.Risky.Biz · July 1, 2026
  • Anonymous researcher dumps zero-day exploits for multiple software products — Scworld · June 30, 2026
  • CVE-2026-42271 Chained with CVE-2026-48710 — horizon3.ai · June 9, 2026
  • Gitea Container Vulnerability Exposes Private Container Images to Attackers — Cybersecuritynews · May 28, 2026
  • CVE-2026-27771: Critical Gitea Container Registry Vulnerability Exposes Private Images to ... — Rescana · May 28, 2026

CVSS v3.1 Breakdown