Critical severity9.9NVD Advisory· Published Sep 10, 2026
CVE-2026-89094
CVE-2026-89094
Description
Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled.
Affected products
2Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.