A critical remote code execution (RCE) vulnerability in Gogs, the open-source self-hosted Git service, remains unpatched. The researcher who discovered and reported the bug in March has received no response from the maintainers. Making matters worse, a public exploit module is now available, putting Gogs installations at active risk with no official fix in sight.

4m read timeFrom theregister.com
Post cover image
Table of contents
AI eyes scanning for bugs create a worrisome Linux security trendAnthropic to release Mythos-class models to the publicHow to guarantee a speaker gig: Hack the system. LiterallyDisgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops

Sort: