Verified vulnerability record
CVE-2026-52806
gogs RCE Remote Code Execution · affected before 0.14.3
This vulnerability is fixed in 0.14.3
Sensor telemetry
3 attempts · 1 sensor
First-party observations recorded across 1 attacker IP.
Evidence
Active exploitation observed
Independent exploitation attestation added to the KEV Intelligence record.
Actionable artifact
Enrichment available
CVSS, EPSS, and related context help prioritize remediation.
Evidence, telemetry, and action stay attached to the CVE.
Browse exploited CVEs →