First published: Fri Nov 15 2024(Updated: )
Gogs <=0.13.0 is vulnerable to Directory Traversal via the editFilePost function of internal/route/repo/editor.go.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
go/gogs.io/gogs | <=0.13.0 | |
Gogs | <=0.13.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-44625 is classified as a critical vulnerability due to its potential for directory traversal attacks.
To fix CVE-2024-44625, update Gogs to a version higher than 0.13.0.
CVE-2024-44625 affects Gogs versions up to and including 0.13.0.
CVE-2024-44625 is a directory traversal vulnerability that allows unauthorized file access.
Yes, CVE-2024-44625 can lead to remote code execution if exploited.