Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Gogs, a self-hosted Git service, has a vulnerability allowing path traversal in organization names. This flaw permits attackers to create nested Git repositories, leading to the potential for Remote Code Execution (RCE) by overwriting hooks configurations. The issue arises from unsanitized organizat...
Multiple critical vulnerabilities affecting Gogs and Jinjava have been disclosed, with severe impacts including remote code execution (RCE) and unauthorized file access. Gogs vulnerabilities include CVE-2025-64111 (RCE), CVE-2025-64175 (2FA bypass), and CVE-2026-24135 (path traversal), all affecting...
Gogs, an open-source Git hosting platform, has faced multiple Remote Code Execution (RCE) vulnerabilities. The most recent, CVE-2026-52813, was patched in version 0.14.3, released on August 19, 2026, after a history of delayed fixes. This vulnerability allowed path traversal through organization use...