https://seclists.org/oss-sec/2026/q1/85: CVE-2025-8110 in Gogs self-hosted git service
Published Jan 17, 2026
·Updated
Affected Software
1 affected component
github/gogs
Frequently Asked Questions
1
What is the severity of CVE-2025-8110?
CVE-2025-8110 is a high-severity vulnerability that is being actively exploited.
2
How do I fix CVE-2025-8110?
To fix CVE-2025-8110, update your Gogs installation to the latest version that includes the patch from pull request 8082.
3
What versions of Gogs are affected by CVE-2025-8110?
CVE-2025-8110 affects all versions of Gogs prior to the patch included in pull request 8082.
4
What is the nature of CVE-2025-8110?
CVE-2025-8110 involves vulnerabilities that may allow unauthorized access or exploitation in the Gogs git service.
5
Is CVE-2025-8110 already exploited in the wild?
Yes, CVE-2025-8110 is reported to be actively exploited, making immediate remediation critical.