XBow Security AI Live Demo: Uncovers Critical Gitea RCE Vulnerability

moyix · x · 2026-08-06

XBow showcased its security AI uncovering a critical Gitea RCE vulnerability (CVE-2026-59774) live at their booth. The flaw requires no login or write access; attackers can read arbitrary files accessible to the service account via crafted Org-mode markup in a public repository, which can be chained into command execution.

Original post →

More from Safety

Safety channel →