A critical vulnerability in Gitea, the self-hosted Git platform, allows unauthenticated attackers to read arbitrary files accessible to the service account. Tracked…
Gitea Docker images versions before 1.26.3 are vulnerable to CVE-2026-20896, which allows unauthenticated access via a trusted reverse proxy header. The fix…
An IP address from ProtonVPN service (159.26.98[.]241) was observed in the initial reconnaissance phase of the attempted exploitation of CVE-2026-20896, though no…