Gogs has a Path Traversal in file update API
43Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.7epss 75%
exploitation probability
75%top 1% of all CVEs
observed exploitation
nono source reports it
In short
Gogs has a flaw that lets an attacker write files anywhere on the server through its file update API, which can be used to gain unauthorized SSH access to the system.
Technical detail
A path traversal vulnerability in Gogs' file update API (CWE-22) allows an authenticated or unauthenticated attacker to write arbitrary files to any location on the filesystem, enabling SSH key injection for remote code execution. The vulnerability requires access to the file update endpoint and is mitigated in version 0.13.1 and later.
Summary generated and translated by AI from the official description.
Gogs is an open source self-hosted Git service. A malicious user is able to write a file to an arbitrary path on the server to gain SSH access to the server. The vulnerability is fixed in 0.13.1.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
gogs · gogs