File overwrite in file update API in Gogs
Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.
AV:NAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityClick technique nodes to view MITRE ATT&CK details. Scroll to zoom, drag to pan.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit details1 Nuclei template available for automated vulnerability detection.
Get the full picture for CVE-2025-8110 and every CVE in our database. Create a free account — no credit card required.
Create Free Account