8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/SC:N/VI:H/SI:N/VA:H/SA:N/E:A/AU:Y/R:U/V:C
Description
CVE-2025-8110 Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code. How does this detection method work? Extracts the Gogs version from the footer of /user/login via regex Gogs Version: X.X.X and flags instances...
Basic Information
ID
C42F97AF-C792-5433-9B26-EEB1F8D2210B
Published
Dec 11, 2025 at 10:37
Modified
Dec 11, 2025 at 10:49