A critical remote code execution (RCE) vulnerability in Gogs, the open-source self-hosted Git service, remains unpatched. The researcher who discovered and reported the bug in March has received no response from the maintainers. Making matters worse, a public exploit module is now available, putting Gogs installations at active risk with no official fix in sight.
Table of contents
AI eyes scanning for bugs create a worrisome Linux security trendAnthropic to release Mythos-class models to the publicHow to guarantee a speaker gig: Hack the system. LiterallyDisgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls copsSort: