Gogs 0-Day Exploited in the Wild
ID: de1d4ff5-0659-5286-8220-4a70d17a0a69
STIX ID: report--de1d4ff5-0659-5286-8220-4a70d17a0a69
Feed Name: Wiz Blog
Threat Score
**Wiz Research discovered an active zero-day (CVE-2025-8110) in Gogs that bypasses a prior RCE fix via symlink abuse, enabling authenticated repository creators to overwrite files outside repos and achieve remote code execution; the flaw is actively exploited in the wild across hundreds of internet-exposed instances, with Supershell-based malware and identified C2/IP indicators observed, and no upstream patch available as of the report date.**
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
