Gitea RCE Vulnerability Lets Repository Writers Execute Shell Commands via Git Hooks
A newly disclosed remote code execution vulnerability in Gitea allows users with repository write access to plant a malicious Git hook that runs arbitrary shell commands. This could lead to full server compromise if exploited. The flaw is significant because Gitea is a popular self-hosted Git service, and many organizations rely on it for source code management.