news.mlab.sh
5 results
vulnerability

New Gogs zero-day flaw lets hackers get remote code execution

A zero-day vulnerability (CVE-2024-39933) has been identified in Gogs, a self-hosted Git service, allowing authenticated attackers to execute remote code execution (RCE). The flaw, initially discovered by Jonah Burgess, stems from default configurations including open registration and unlimited repository creation, pot…

BleepingComputer · May 28, 2026 High