logo

Gogs 0-Day Exploited in the Wild

ID: de1d4ff5-0659-5286-8220-4a70d17a0a69

STIX ID: report--de1d4ff5-0659-5286-8220-4a70d17a0a69

Feed Name: Wiz Blog

Threat Score
90/100

Date Published: 2025-12-10

Date Updated: 2026-05-01

...
...

**Wiz Research discovered an active zero-day (CVE-2025-8110) in Gogs that bypasses a prior RCE fix via symlink abuse, enabling authenticated repository creators to overwrite files outside repos and achieve remote code execution; the flaw is actively exploited in the wild across hundreds of internet-exposed instances, with Supershell-based malware and identified C2/IP indicators observed, and no upstream patch available as of the report date.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.