Количество 2
Количество 2
CVE-2026-24135
Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, a path traversal vulnerability exists in the updateWikiPage function of Gogs. The vulnerability allows an authenticated user with write access to a repository's wiki to delete arbitrary files on the server by manipulating the old_title parameter in the wiki editing form. This issue has been patched in versions 0.13.4 and 0.14.0+dev.
GHSA-jp7c-wj6q-3qf2
Gogs vulnerable to arbitrary file deletion via Path Traversal in wiki page update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-24135 Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, a path traversal vulnerability exists in the updateWikiPage function of Gogs. The vulnerability allows an authenticated user with write access to a repository's wiki to delete arbitrary files on the server by manipulating the old_title parameter in the wiki editing form. This issue has been patched in versions 0.13.4 and 0.14.0+dev. | 0% Низкий | 2 дня назад | ||
GHSA-jp7c-wj6q-3qf2 Gogs vulnerable to arbitrary file deletion via Path Traversal in wiki page update | 0% Низкий | 2 дня назад |
Уязвимостей на страницу