# Gitea RCE Vulnerability Lets Repository Writers Execute Shell Commands via Git Hooks

A newly disclosed remote code execution vulnerability in Gitea allows users with repository write access to plant a malicious Git hook that runs arbitrary shell commands. This could lead to full server compromise if exploited. The flaw is significant because Gitea is a popular self-hosted Git service, and many organizations rely on it for source code management.

**Importance:** 4/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/07/new-gitea-rce-lets-repository-writers.html) — Wed, 29 Jul 2026 13:17:19 +0530