0.967 High
EPSS
Percentile
99.7%
github.com/gogs/gogs is vulnerable to remote code execution (RCE). The vulnerability exists through git hooks which are enabled by default.
git hooks
packetstormsecurity.com/files/162123/Gogs-Git-Hooks-Remote-Code-Execution.html
www.fzi.de/en/news/news/detail-en/artikel/fsa-2020-3-schwachstelle-in-gitea-1125-und-gogs-0122-ermoeglicht-ausfuehrung-von-code-nach-authent/