CVE-2025-8110
Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.
- Affected products
- Gogs
- Gogs
- ≤ 0.13.3
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 82.5% (100th percentile)
- Weakness
- CWE-22
- NVD status
- Analyzed
- Published
- 2025-12-10
- Attack patterns
- CAPEC-549
CVE-2025-8110 at NVD
18 known exploits for CVE-2025-8110
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for Path Traversal in Gogs
Exploit for CVE-2025-8110
Exploit for CVE-2025-8110