Grilled Cheese

ExploreLog inSign up
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-10 01:38:52 EDT

Explore

PostsPeople
LatestRanked
@threadlinqs.bsky.socialOct 8, 2026, 12:35 PM

Gitea's SSH key lookup was case-insensitive - a crafted RSA key could match another user's key. https://intel.threadlinqs.com/threat/TL-2026-3046 #ThreatIntel #CVE_2026_103059 #CVE_2026_70357 #Gitea

Gitea 28.x Patches 27 Security Flaws Including Critical SSH Public-Key Authentication Bypass (CVE-2026-103059), SSRF/DNS Rebinding and Actions Approval Bypasses
@hacks.grOct 8, 2026, 11:07 AM

Gitea fixed 27 issues across versions 28.0.0 and 28.1.0.

The most serious could allow sign-in as another user, but onl…

https://en.hacks.gr/to-gitea-diorthonei-27-provlimata-asfaleias-ena-apo-ta-opoia-tha-mporoyse-ypo-proypotheseis-na-epitrepsei-syndesi-os-allos-christis/

#Gitea #Git #CodeHosting

Το Gitea διορθώνει 27 προβλήματα ασφαλείας, ένα από τα οποία θα μπορούσε υπό προϋποθέσεις να επιτρέψει σύνδεση ως άλλος χρήστης
@crowncloud.bsky.socialOct 8, 2026, 7:00 AM

Want your own lightweight Git server?

Learn how to install and configure Gitea on Debian 12. Host your Git repositories, manage code, and collaborate from your own server with this step-by-step guide.

wiki.crowncloud.net/index.php?Ho...

#Gitea #Debian12 #Git #Linux #SelfHosting #DevOps

@stackflag.bsky.socialOct 8, 2026, 1:00 AM

CVE-2026-73802 - gitea
The Gitea Runner may copy the host's system settings into the containers that run your automated tasks, even when the privileged option is turned off. This could let a job see or affect…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #Golang #CVE #infosec

@stackflag.bsky.socialOct 7, 2026, 10:20 PM

CVE-2026-101023 - gitea
Gitea's login system can be tricked into treating a regular access token like a refresh token, allowing anyone who has that token to request fresh access and refresh tokens and stay logged in…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #CVE #infosec

@stackflag.bsky.socialOct 7, 2026, 10:20 PM

CVE-2026-95106 - gitea
Gitea can accept a repository that contains two files with the same name. When this happens, the web interface shows the first version while the build system and downloads use the second version,…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #CVE #infosec

@stackflag.bsky.socialOct 7, 2026, 10:10 PM

CVE-2026-94205 - gitea
In Gitea, when a maintainer triggers certain actions on a pull request from a fork, the system may start the workflow without requiring explicit approval, even though the code comes from the…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #CVE #infosec

@stackflag.bsky.socialOct 7, 2026, 10:10 PM

CVE-2026-73278 - gitea
When people sign in to Gitea using an external service like OAuth or OpenID Connect, the system can skip the required security key check if that is the only two‑factor method set up. An attacker…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #CVE #infosec

@stackflag.bsky.socialOct 7, 2026, 10:00 PM

CVE-2026-103059 - gitea
If Gitea's built‑in SSH server is turned on, it checks public keys in a way that ignores letter case. An attacker who creates a key that is the same as a legitimate user's key except for…

Too many irrelevant or confusing CVEs? Use stackflag.com

#gitea #CVE #infosec

@securityonline.bsky.socialOct 7, 2026, 2:36 PM

A Gitea security update fixes 27 flaws, including SSRF bug CVE-2026-101027 and SSH key flaw CVE-2026-103059. Upgrade to Gitea 28.1.0 now.

#Gitea #Git #DevSecOps #SSRF #CVE2026101027 #CVE2026103059 #SupplyChainSecurity #Vulnerability

@selfh.stOct 2, 2026, 12:14 PM

Self-Host Weekly (2026-10-02)

A new #homeassistant marketplace, updates and launches, a spotlight on #Tagr, and more in this week's #selfhosted recap!

selfh.st/weekly/2026-...

#selfhost #selfhosting #opensource #foss #homelab #newsletter #privacy #nextcloud #raspberrypi #gitea #nios #wsl #unraid

@linuxiac.bsky.socialSep 30, 2026, 9:24 AM

Gitea jumps from the 1.x series to version 28.0, bringing audit logging, bot accounts, admin impersonation, and new collaboration features.
linuxiac.com/gitea-28-0-d...

#Git #Gitea #OpenSource

@selfhost.directorySep 29, 2026, 11:33 PM

🚀 New #release · Gitea v28.0.0 - Breaking: Git network ops now use internal proxy, update egress settings. Details, install & alternatives → https://selfhost.directory/project/gitea#update-19138026 #homeserverlife #gitea #git #security #opensource

@zet23t.mastodon.gamedev.place.ap.brid.gySep 26, 2026, 4:06 PM

Slowly, one by one, it is getting green; Once this all works I can switch to pushing to my own server (the machine sitting on a shelf here at home) primarily and see how it fares - before phasing out using github (and paying for it).

#gamedev #gitea

Dark-themed CI/build history list showing multiple recent jobs on the main branch with status icons: green checks, red Xs, one yellow in-progress circle, and some empty circles. Visible entries include “tech: fixing windows build issue,” “tech: getting rid of central orchestrator to get around issues with gitea,” “tech: deactivating macos builds,” and “tech: more downgrades for more upgrades,” with timestamps and run durations on the right.
@zet23t.bsky.socialSep 26, 2026, 4:06 PM

Slowly, one by one, it is getting green; Once this all works I can switch to pushing to my own server (the machine sitting on a shelf here at home) primarily and see how it fares - before phasing out using github (and paying for it).

#gamedev #gitea

Dark-themed CI/build history list showing multiple recent jobs on the main branch with status icons: green checks, red Xs, one yellow in-progress circle, and some empty circles. Visible entries include “tech: fixing windows build issue,” “tech: getting rid of central orchestrator to get around issues with gitea,” “tech: deactivating macos builds,” and “tech: more downgrades for more upgrades,” with timestamps and run durations on the right.
@ralf-ladner.bsky.socialSep 24, 2026, 1:36 PM

Red Heron nutzt kritische Gitea-Lücke für internationale Cyberangriffe

#Cyberangriff @acronis #Cybersecurity #Cybersicherheit #Gitea #Linux #LinuxRootkit #RedHeron #Schadsoftware

netzpalaver.de/2026/09/14/r...

@blablalinux.beSep 19, 2026, 12:51 PM

Hop, un p'tit repo tout chaud sur #GitHub et bien planqué/synchronisé sur #Gitea ! 🚀

C'est mon p'tit script pour mettre à jour les invités #Proxmox (#LXC et #VM) sans prise de tête.

👉 C'est par ici : github.com/anyblabla/pr...

@twistedraven.bsky.socialSep 18, 2026, 8:34 PM

Rookery 1.1.0 released. One Rookery now hosts several Gitea runners — a row each for status, uptime and current job, with Start/Stop per runner. Bundled runner moves to gitea-runner v3.3.0.

https://twistedraven.net/news/rookery-1-1-0/

#Gitea #CI #macOS

@slink.fosstodon.org.ap.brid.gySep 18, 2026, 3:16 PM

It seems like whenever I work on #forgejo, some hacky code from the #gitea days pops up. If you use forgejo, you should really be grateful to the new maintainers for being the competent developers that they are.

And all the linting and checking they have sometimes is a PITA, but for a good […]

@mmarif.bsky.socialSep 17, 2026, 3:58 PM

GitNex 15 is OUT now..

Feature highlights:
- Unified notifications
- 2 new themes
- Tags for files and commits
- Comment UI expansion with file uploads, notes addition and more
- Content viewer now supports tablets
- and more..

codeberg.org/gitnex/GitNe...

#gitnex #git #android #app #gitea

Load more