logo

700+ self-hosted Gits battered in 0-day attacks with no fix imminent

ID: dfdfbfb4-8445-5b62-92d0-14f7a5313abc

STIX ID: report--dfdfbfb4-8445-5b62-92d0-14f7a5313abc

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2025-12-10

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Wiz researchers disclosed a zero-day (CVE-2025-8110) in Gogs (<=0.13.3) that bypasses a previous patch by abusing symbolic links and the PutContents API to overwrite files outside repos, enabling remote code execution; over 700 of ~1,400 internet-exposed Gogs instances were confirmed compromised with Supershell C2 payloads. Researchers recommend disabling open registration and restricting internet exposure, and published IOCs to detect exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.