blob: 0426aab4343d455aa44e4846b578d3b11c916b76 [file]
id: GO-2025-4225
modules:
- module: gogs.io/gogs
unsupported_versions:
- last_affected: 0.13.3
vulnerable_at: 0.13.3
summary: Gogs vulnerable to a bypass of CVE-2024-55947 in gogs.io/gogs
cves:
- CVE-2025-8110
ghsas:
- GHSA-mq8m-42gh-wq7r
references:
- advisory: https://github.com/advisories/GHSA-mq8m-42gh-wq7r
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-8110
- web: http://wiz.io/blog/wiz-research-gogs-cve-2025-8110-rce-exploit
- web: http://www.openwall.com/lists/oss-security/2025/12/11/3
- web: http://www.openwall.com/lists/oss-security/2025/12/11/4
source:
id: GHSA-mq8m-42gh-wq7r
created: 2025-12-15T12:55:47.645007422-05:00
review_status: UNREVIEWED