Skip to content

CVE-2024-39930

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
May 28, 2026
Last Seen
May 28, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical argument injection vulnerability (CWE-88) has been discovered in Gogs, a widely used self-hosted Git service, allowing authenticated users to execute arbitrary code on the server. The flaw, identified by Rapid7's Jonah Burgess, has a CVSSv4 score of 9.4 and affects Gogs versions 0.14.2 an...

Public Exploits

Checking GitHub for proof-of-concept code…