gogs Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for gogs products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

2

In CISA KEV

1

Beyond CISA KEV

1

Sensor Observed

1

Virtual Patch Available

1

gogs KEVs Added by Year

Loading...

2 gogs KEVs added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2026-52813

Gogs: Path Traversal in organization name results in RCE through Git hooks

Confirmed Not in CISA 30 Jun 2026
CVE-2025-8110

File overwrite in file update API in Gogs

Confirmed In CISA 01 Jun 2026

Common Vulnerability Classes (CWE)

  • CWE-22 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') 1
  • CWE-23 — Relative Path Traversal 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology