CVE-2026-60004
CVE-2026-60004 Gitea diffpatch Git-hook installation
- ✓ Runtime validated
- ✓ CI validated
- ✓ Patched control verified
Sigma · Splunk · Elastic
REPRODUCIBLE CVE RESEARCH
CVE Mapping connects vendor claims to observable application state, normalized telemetry, detection engineering, and repeatable validation.
CATALOG
CVE-2026-60004 Gitea diffpatch Git-hook installation
Sigma · Splunk · Elastic
CVE-2026-19650 GitLab GraphQL multiplex GET handling
Sigma · Splunk · Elastic · osquery
CVE-2026-33377 Grafana dashboard import ACL overwrite
Sigma · Splunk · Elastic
CVE-2021-44228 Apache Log4j Log4Shell controlled lab
Sigma · Splunk · Elastic
METHOD
A compact research model keeps each observation scoped, comparable, and reproducible. Read the methodology.
Run the disposable vulnerable and patched controls locally.
Correlate application state, evidence boundaries, and normalized telemetry.
Exercise detection content against the preserved telemetry fixtures.
Record the differential result and keep CI checks repeatable.
SAFETY
Labs use disposable systems and localhost-only vulnerable services. CVE Mapping does not host vulnerable instances. Use only synthetic/local credentials and test systems you own or are explicitly authorized to assess. Review the safety model.
SEPARATE TRACK
CVE-2026-19478 is retained as experimental research. It is not a published lab and does not carry the validation status shown in the catalog above.
View repository research