Vulnerabilidades em Gogs
57 resultadosAnálise Vexday
Gogs apresenta 1 vulnerabilidade catalogada, integralmente sob exploração ativa (KEV), relacionada a traversal de diretório (CWE-22). Embora nenhuma seja crítica por CVSS e sem publicações recentes, a exploração em campo representa risco imediato para ambientes em produção.
CVE-2022-2024CRITICALOS Command Injection in gogs/gogsEPSS 97.8%CVE-2025-8110HIGHFile overwrite in file update API in GogsEPSS 82.7%KEVCVE-2024-55947HIGHGogs has a Path Traversal in file update APIEPSS 75.2%CVE-2022-0415CRITICALRemote Command Execution in uploading repository file in gogs/gogsEPSS 65.2%CVE-2022-32174CRITICALGogs - XSSEPSS 58.0%CVE-2022-1993HIGHPath Traversal in gogs/gogsEPSS 51.9%CVE-2022-1986CRITICALOS Command Injection in gogs/gogsEPSS 4.4%CVE-2022-0870MEDIUMServer-Side Request Forgery (SSRF) in gogs/gogsEPSS 3.4%CVE-2022-1992CRITICALPath Traversal in gogs/gogsEPSS 2.3%CVE-2022-1884CRITICALRemote Command Execution in gogs/gogsEPSS 1.8%CVE-2026-52806CRITICALGogs: RCE via git rebase --exec argument injection in pull request mergeEPSS 1.5%CVE-2022-0871HIGHMissing Authorization in gogs/gogsEPSS 1.2%CVE-2025-64111CRITICALGogs's update .git/config file allows remote command executionEPSS 1.2%CVE-2026-52815MEDIUMGogs: Unauthenticated Organization Teams Information Disclosure via APIEPSS 1.1%CVE-2022-1285HIGHServer-Side Request Forgery (SSRF) in gogs/gogsEPSS 1.1%CVE-2024-56731CRITICALGogs deletion of internal files allows remote command executionEPSS 0.9%CVE-2026-52813CRITICALGogs: Path Traversal in organization name results in RCE through Git hooksEPSS 0.9%CVE-2024-54148HIGHGogs has a Path Traversal in file editing UIEPSS 0.9%CVE-2022-1464HIGHStored xss bug in gogs/gogsEPSS 0.7%CVE-2022-31038MEDIUMXSS vulnerability in repository issue list in GogsEPSS 0.7%