CVE-2025-8110

Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gogs:gogs:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-10 14:16

Updated : 2026-01-20 13:47


NVD link : CVE-2025-8110

Mitre link : CVE-2025-8110

CVE.ORG link : CVE-2025-8110


JSON object : View

Products Affected

gogs

  • gogs
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')