https://seclists.org/oss-sec/2026/q1/85: CVE-2025-8110 in Gogs self-hosted git service
Published Jan 17, 2026
·Updated
Affected Software
1 affected component
github/gogs
CVE-2025-8110 is a high-severity vulnerability that is being actively exploited.
To fix CVE-2025-8110, update your Gogs installation to the latest version that includes the patch from pull request 8082.
CVE-2025-8110 affects all versions of Gogs prior to the patch included in pull request 8082.
CVE-2025-8110 involves vulnerabilities that may allow unauthorized access or exploitation in the Gogs git service.
Yes, CVE-2025-8110 is reported to be actively exploited, making immediate remediation critical.