CVE-2026-60004: Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.

Severity: Critical

CVSS Score: 9.8

Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.