Related Threat Clusters
-
CISA Directs Agencies to Address Gogs RCE Vulnerability Exploited in Zero-Day Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has mandated that government agencies secure their systems against a critical Gogs vulnerability, tracked as CVE-2025-8110. This remote code execution…
6 articles · Updated January 12, 2026 -
Gogs 0-Day Vulnerability Exploited in Over 700 Instances
A zero-day vulnerability in Gogs, identified as CVE-2025-8110, is being actively exploited, allowing authenticated users to execute remote code. This flaw affects over 50% of public-facing Gogs instances, and as of now,…
4 articles · Updated December 11, 2025 -
Anonymous Researcher Publishes Zero-Day Exploits for Major Software Projects
An anonymous researcher known as Bikini has released exploit code for over a dozen zero-day vulnerabilities affecting 15 popular open-source projects, including the Linux kernel and Libssh2. The exploits were disclosed…
4 articles · Updated July 1, 2026 -
Gogs Vulnerability Allows Remote Code Execution via Path Traversal
Gogs, a self-hosted Git service, has a vulnerability allowing path traversal in organization names. This flaw permits attackers to create nested Git repositories, leading to the potential for Remote Code Execution (RCE)…
3 articles · Updated June 24, 2026 -
Critical Zero-Day Vulnerability in Gogs Allows Remote Code Execution
A critical argument injection vulnerability (CWE-88) has been discovered in Gogs, a widely used self-hosted Git service, allowing authenticated users to execute arbitrary code on the server. The flaw, identified by…
10 articles · Updated May 28, 2026 -
Critical Vulnerabilities in Gogs and Jinjava Require Immediate Patching
Multiple critical vulnerabilities affecting Gogs and Jinjava have been disclosed, with severe impacts including remote code execution (RCE) and unauthorized file access. Gogs vulnerabilities include CVE-2025-64111…
2 articles · Updated June 25, 2026 -
Dutch Authorities Dismantle 17 Million Device Botnet in Major Cybercrime Operation
Dutch police, in collaboration with the National Cyber Security Centre (NCSC), have dismantled a massive botnet comprising over 17 million infected devices. The operation involved seizing more than 200 servers located…
29 articles · Updated May 29, 2026 -
Critical Gogs Vulnerability Enables Silent Overwrite of Large File Storage Objects
A critical vulnerability in Gogs allows attackers to silently overwrite large file storage objects, posing a significant risk to users relying on this platform. The flaw could lead to unauthorized data manipulation…
3 articles · Updated March 10, 2026 -
Gogs Vulnerabilities Lead to XSS and Token Leakage Risks
Gogs, an open source self-hosted Git service, has two critical vulnerabilities prior to version 0.14.2. CVE-2026-26276 allows attackers to execute a DOM-Based XSS via malicious HTML/JavaScript in Milestone names, while…
4 articles · Updated March 5, 2026 -
Over 700 Gogs Instances Compromised by Zero-Day Exploit (CVE-2025-8110)
A zero-day vulnerability in Gogs, a self-hosted Git service, is being actively exploited, affecting over 700 instances. Discovered by Wiz Research during a malware investigation, the vulnerability allows authenticated…
6 articles · Updated December 10, 2025
Recent Intelligence Reports
- Yet another RCE in Gogs, but it's fixed this time! — Aikido.Dev · August 19, 2026
- Risky Bulletin: Researcher drops giant cache of zero — News.Risky.Biz · July 1, 2026
- Multiple Critical Vulnerability Disclosures Across Gogs, Jinjava, and Kubernetes Local Path ... — Mallory.Ai · June 25, 2026
- GHSA C39w 43gm 34h5 — osv.dev · June 24, 2026
- Gogs has Path Traversal in organization name that results in RCE through Git hooks Home on GitLab Advisory Database (GLAD) / 8h Organization names containing path traversal sequences (../) are accepted by Gogs, and repositories under them are written to paths following these path traversals. This allows storing/retrieving data for repositories at arbitrary locations on the filesystem. By creating nested structure of Git repositories, one can overwrite the other's hooks configuration to result in — advisories.gitlab.com · June 24, 2026
- CVE-2026-52813 - Exploits & Severity — Feedly · June 24, 2026
- Waiting for security patch: Self-hosted Git service Gogs is vulnerable — Heise.De · May 29, 2026
- New Gogs 0 — Gbhackers · May 29, 2026