Critical CVEs
A critical remote code execution (RCE) vulnerability, tracked as CVE-2026-60004 with a CVSS score of 9.8, has been patched in Gitea, the…
API Security
application security
CVE-2026-50522
CVE-2026-60004
July 29, 2026
Critical CVEs
A critical remote code execution vulnerability in Gitea allows users with repository write access to plant a Git hook and execute shell…
critical
CVE-2026-60004
CVSS 9.8
Git Hook
July 29, 2026
Critical CVEs
A Git-hook sandbox escape vulnerability in Cursor, reported by Novee under coordinated disclosure and fixed in Cursor 2.5 on February 13, 2026.
Cursor
CVE-2026-26268
Git Hook
sandbox escape
July 1, 2026