Gogs vulnerable to a bypass of CVE-2024-55947
High severity
GitHub Reviewed
Published
Dec 10, 2025
to the GitHub Advisory Database
•
Updated Jan 20, 2026
Description
Published by the National Vulnerability Database
Dec 10, 2025
Published to the GitHub Advisory Database
Dec 10, 2025
Reviewed
Dec 10, 2025
Last updated
Jan 20, 2026
Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.
References