A vulnerability was found in code-projects Online Library Management System 1.0. Affected is an unknown function of the file /sql/library.sql of the component SQL Database Backup File Handler. Performing a manipulation results in information disclosure. The attack may be initiated remotely. The exploit has been made public and could be used.
[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-60004-POC
CVE-2026-60004 Pre-Auth RCE Exploit — Gitea <= 1.27.0 diffpatch git hook injection (CVSS 9.8)
[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-60004
Gitea diffpatch RCE (CVE-2026-60004) PoC - repo-write to RCE as Gitea service account
[POC] GHSA-3whf-vgf2-9w6g — CVE-2026-60004
Gitea diffpatch RCE
[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-60004-gitea-0day
CVE-2026-60004 — Gitea <= 1.27.0 Pre-Auth RCE
[POC] GHSA-3whf-vgf2-9w6g — CVE-2026-60004
CVE-2026-60004
[POC] GHSA-3whf-vgf2-9w6g — CVE-2026-60004
CVE-2026-60004
[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-60004
CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free