Browse Security Advisories
Critical Security Advisories for https://github.com/gogs/gogs Clear Filters
      
        Critical
      
    
      
  
          4 months ago
    
    Gogs allows deletion of internal files which leads to remote command execution
        
        go
        
        gogs.io/gogs
      
    
      
        Critical
      
    
      
  
          10 months ago
    
    Gogs allows argument injection during the previewing of changes
        
        go
        
        gogs.io/gogs
      
    Filter by Severity
Filter by Ecosystem
          
            npm
            1,039
          
            maven
            945
          
            packagist
            577
          
            pypi
            517
          
            go
            328
          
            cargo
            168
          
            rubygems
            121
          
            nuget
            79
          
            actions
            9
          
            swift
            7
          
            hex
            5
      
      Filter by Package
          
            magento/community-edition
            38
          
            dolibarr/dolibarr
            25
          
            com.liferay.portal:release.dxp.bom
            24
          
            com.fasterxml.jackson.core:jackson-databind
            24
          
            net.mingsoft:ms-mcms
            20
          
            org.jenkins-ci.main:jenkins-core
            19
          
            salt
            17
          
            moodle/moodle
            16
          
            topthink/framework
            15
          
            Django
            14
          
            org.apache.struts:struts2-core
            14
          
            mlflow
            14
          
            org.apache.dubbo:dubbo
            13
          
            drupal/core
            12
          
            org.xwiki.platform:xwiki-platform-oldcore
            12
          
            langchain
            11
          
            flowise
            11
          
            magento/core
            11
          
            gogs.io/gogs
            11
          
            com.liferay.portal:release.portal.bom
            11
          
            org.xwiki.platform:xwiki-platform-web-templates
            10
          
            phpmyadmin/phpmyadmin
            10
          
            apache-airflow
            10
          
            vm2
            10
          
            funadmin/funadmin
            9
          
            drupal/drupal
            9
          
            ansible
            9
          
            froxlor/froxlor
            8
          
            rdiffweb
            8
          
            github.com/argoproj/argo-cd
            8
          
            org.xwiki.platform:xwiki-platform-administration-ui
            8
          
            symfony/symfony
            8
          
            shopware/platform
            8
          
            sequelize
            7
          
            zendframework/zendframework1
            7
          
            pyload-ng
            7
          
            github.com/rancher/rancher
            7
          
            rusqlite
            7
          
            github.com/argoproj/argo-cd/v2
            7
          
            paddlepaddle
            7
          
            studio-42/elfinder
            7
          
            vllm
            7
          
            parse-server
            7
          
            zendframework/zendframework
            6
          
            org.apache.shiro:shiro-core
            6
          
            mercurial
            6
          
            aaptjs
            6
          
            craftcms/cms
            6
          
            ezsystems/ezpublish-kernel
            6
          
            mautic/core
            6
          
            thorsten/phpmyfaq
            6
          
            typo3/cms
            6
          
            org.jeecgframework.boot:jeecg-boot-common
            6
          
            org.apache.inlong:manager-pojo
            6
          
            pillow
            6
          
            github.com/hashicorp/vault
            6
          
            nilsteampassnet/teampass
            6
          
            github.com/answerdev/answer
            6
          
            shopware/core
            5
          
            Microsoft.ChakraCore
            5
          
            github.com/mattermost/mattermost/server/v8
            5
          
            org.jeecgframework.boot:jeecg-boot-parent
            5
          
            steal
            5
          
            org.apache.openmeetings:openmeetings-parent
            5
          
            ckb
            5
          
            bentoml
            5
          
            code.gitea.io/gitea
            5
          
            librenms/librenms
            5
          
            org.xwiki.platform:xwiki-platform-web
            5
          
            github.com/grafana/grafana
            5
          
            org.jenkins-ci.plugins:script-security
            5
          
            tensorflow
            5
          
            centreon/centreon
            5
          
            safe-eval
            5
          
            adodb/adodb-php
            5
          
            dompdf/dompdf
            5
          
            prestashop/prestashop
            5
          
            executorch
            5
          
            tensorflow-gpu
            5
          
            org.pytorch:executorch-android
            5
          
            dbgpt
            5
          
            nodebb
            5
          
            org.xwiki.commons:xwiki-commons-xml
            5
          
            org.apache.ignite:ignite-core
            4
          
            contao/contao
            4
          
            org.jeecgframework.boot:jeecg-boot-base-core
            4
          
            org.apache.activemq:activemq-client
            4
          
            gradio
            4
          
            nukeviet/nukeviet
            4
          
            Pillow
            4
          
            hermes-engine
            4
          
            feehi/cms
            4
          
            apache-airflow-providers-apache-hive
            4
          
            simplesamlphp/simplesamlphp
            4
          
            langchain-experimental
            4
          
            org.apache.inlong:manager-service
            4
          
            swagger-ui
            4
          
            net.opentsdb:opentsdb
            4
          
            org.springframework.security:spring-security-core
            4
          
            org.apache.tapestry:tapestry-core
            4
          
            shopware/shopware
            4
          
            ray
            4
          
            tensorflow-cpu
            4
          
            org.eclipse.jetty:jetty-server
            4
          
            realms-shim
            4
          
            nokogiri
            4
          
            openssl-src
            4
          
            contao/core-bundle
            4
          
            org.cloudfoundry.identity:cloudfoundry-identity-server
            4
          
            aim
            4
          
            org.apache.kylin:kylin-server-base
            4
          
            org.apache.tomcat.embed:tomcat-embed-core
            4
          
            org.xwiki.platform:xwiki-platform-search-ui
            4
          
            org.xwiki.platform:xwiki-platform-flamingo-skin-resources
            4
          
            mongoose
            4
          
            ai.h2o:h2o-core
            4
          
            tribalsystems/zenario
            4
          
            baserproject/basercms
            4
          
            messagepack-rs
            4
          
            h2o
            4
          
            showdoc/showdoc
            4
          
            ait-core
            4
          
            ruby-saml
            4
          
            calibreweb
            4
          
            org.xwiki.platform:xwiki-platform-appwithinminutes-ui
            4
          
            smallvec
            4
          
            cobbler
            4
          
            safer-eval
            4
          
            github.com/usememos/memos
            4
          
            PaddlePaddle
            3
          
            Microsoft.AspNetCore.App.Runtime.linux-musl-arm64
            3
          
            torchserve
            3
          
            github.com/bnb-chain/tss-lib
            3
          
            magento/project-community-edition
            3
          
            Microsoft.AspNetCore.App.Runtime.linux-arm
            3
          
            github.com/IceWhaleTech/CasaOS
            3
          
            github.com/cosmos/ibc-go/v6
            3
          
            github.com/cosmos/ibc-go/v4
            3
          
            org.jeecgframework.boot:jeecg-module-system
            3
          
            github.com/cosmos/ibc-go/v7
            3
          
            namada-apps
            3
          
            github.com/dexidp/dex
            3
          
            twisted
            3
          
            github.com/pterodactyl/wings
            3
          
            ezsystems/ezplatform-kernel
            3
          
            publify_core
            3
          
            codeigniter/framework
            3
          
            org.apache.ozone:ozone-main
            3
          
            org.jenkins-ci.plugins.workflow:workflow-cps
            3
          
            io.undertow:undertow-core
            3
          
            wwbn/avideo
            3
          
            @openzeppelin/contracts-upgradeable
            3
          
            symfony/security
            3
          
            strapi
            3
          
            org.xwiki.platform:xwiki-platform-flamingo-theme-ui
            3
          
            id-map
            3
          
            modoboa
            3
          
            pimcore/pimcore
            3
          
            org.jenkins-ci.plugins:active-directory
            3
          
            llama-index-core
            3
          
            feathers-sequelize
            3
          
            slp-validate
            3
          
            org.apache.storm:storm
            3
          
            github.com/cosmos/ibc-go/v3
            3
          
            github.com/beego/beego
            3
          
            org.apache.ranger:ranger
            3
          
            github.com/chaos-mesh/chaos-mesh
            3
          
            github.com/cosmos/ibc-go
            3
          
            pandasai
            3
          
            nvflare
            3
          
            phpmailer/phpmailer
            3
          
            org.xwiki.platform:xwiki-platform-rest-server
            3
          
            github.com/cosmos/ibc-go/v2
            3
          
            Plone
            3
          
            org.apache.hadoop:hadoop-common
            3
          
            smarty/smarty
            3
          
            github.com/go-gitea/gitea
            3
          
            org.apache.tomcat:tomcat-catalina
            3
          
            org.apache.linkis:linkis
            3
          
            org.xwiki.platform:xwiki-platform-distribution-war
            3
          
            org.zenframework.z8.dependencies.commons:log4j-1.2.17
            3
          
            github.com/gofiber/fiber/v2
            3
          
            actix-web
            3
          
            vyper
            3
          
            SQLAlchemy
            3
          
            Microsoft.AspNetCore.App.Runtime.linux-arm64
            3
          
            org.apache.jmeter:ApacheJMeter
            3
          
            xml-crypto
            3
          
            mitmproxy
            3
          
            org.jeecgframework.boot:jeecg-boot-base
            3
          
            edu.stanford.nlp:stanford-corenlp
            3
          
            org.xwiki.platform:xwiki-platform-icon-ui
            3
          
            llama-index
            3
          
            org.xwiki.platform:xwiki-platform-panels-ui
            3
          
            org.apache.inlong:manager-web
            3
          
            jsrsasign
            3
          
            com.hazelcast:hazelcast
            3
          
            org.apache.solr:solr-parent
            3
          
            pyyaml
            3
          
            log4j:log4j
            3
      
    
      Filter by Repository
          
            https://github.com/xwiki/xwiki-platform
            101
          
          
            https://github.com/FasterXML/jackson-databind
            24
          
          
            https://github.com/jenkinsci/jenkins
            18
          
          
            https://github.com/apache/airflow
            16
          
          
            https://github.com/django/django
            15
          
          
            https://github.com/Dolibarr/dolibarr
            15
          
          
            https://github.com/mlflow/mlflow
            14
          
          
            https://github.com/saltstack/salt
            13
          
          
            https://github.com/langchain-ai/langchain
            12
          
          
            https://github.com/argoproj/argo-cd
            11
          
          
            https://github.com/ming-soft/MCMS
            11
          
          
            https://github.com/gogs/gogs
            11
          
          
            https://github.com/apache/struts
            10
          
          
            https://github.com/patriksimek/vm2
            10
          
          
            https://github.com/magento/magento2
            10
          
          
            https://github.com/FlowiseAI/Flowise
            10
          
          
            https://github.com/apache/inlong
            10
          
          
            https://github.com/top-think/framework
            9
          
          
            https://github.com/funadmin/funadmin
            9
          
          
            https://github.com/jeecgboot/jeecg-boot
            9
          
          
            https://github.com/python-pillow/Pillow
            9
          
          
            https://github.com/PaddlePaddle/Paddle
            9
          
          
            https://github.com/ansible/ansible
            8
          
          
            https://github.com/ikus060/rdiffweb
            8
          
          
            https://github.com/go-gitea/gitea
            8
          
          
            https://github.com/parse-community/parse-server
            7
          
          
            https://github.com/rancher/rancher
            7
          
          
            https://github.com/Studio-42/elFinder
            7
          
          
            https://github.com/rusqlite/rusqlite
            7
          
          
            https://github.com/sequelize/sequelize
            7
          
          
            https://github.com/pyload/pyload
            7
          
          
            https://github.com/run-llama/llama_index
            7
          
          
            https://github.com/apache/tomcat
            7
          
          
            https://github.com/symfony/symfony
            7
          
          
            https://github.com/xwiki/xwiki-commons
            6
          
          
            https://github.com/tensorflow/tensorflow
            6
          
          
            https://github.com/answerdev/answer
            6
          
          
            https://github.com/shenzhim/aaptjs
            6
          
          
            https://github.com/dompdf/dompdf
            6
          
          
            https://github.com/thorsten/phpmyfaq
            6
          
          
            https://github.com/liferay/liferay-portal
            6
          
          
            https://github.com/shopware/platform
            6
          
          
            https://github.com/nervosnetwork/ckb
            5
          
          
            https://github.com/auth0/auth0-PHP
            5
          
          
            https://github.com/NodeBB/NodeBB
            5
          
          
            https://github.com/ADOdb/ADOdb
            5
          
          
            https://github.com/moodle/moodle
            5
          
          
            https://github.com/apache/activemq
            5
          
          
            https://github.com/pytorch/executorch
            5
          
          
            https://github.com/spring-projects/spring-framework
            5
          
          
            https://github.com/SAML-Toolkits/ruby-saml
            5
          
          
            https://github.com/craftcms/cms
            5
          
          
            https://github.com/vllm-project/vllm
            5
          
          
            https://github.com/keycloak/keycloak
            5
          
          
            https://github.com/PrestaShop/PrestaShop
            5
          
          
            https://github.com/twisted/twisted
            5
          
          
            https://github.com/dromara/hutool
            5
          
          
            https://github.com/hacksparrow/safe-eval
            5
          
          
            https://github.com/stealjs/steal
            5
          
          
            https://github.com/froxlor/froxlor
            5
          
          
            https://github.com/grafana/grafana
            5
          
          
            https://github.com/star7th/showdoc
            4
          
          
            https://github.com/cobbler/cobbler
            4
          
          
            https://github.com/hwchase17/langchain
            4
          
          
            https://github.com/bentoml/BentoML
            4
          
          
            https://github.com/gradio-app/gradio
            4
          
          
            https://github.com/janeczku/calibre-web
            4
          
          
            https://github.com/xwiki/xwiki-rendering
            4
          
          
            https://github.com/ezsystems/ezpublish-kernel
            4
          
          
            https://github.com/ray-project/ray
            4
          
          
            https://github.com/kubernetes/kubernetes
            4
          
          
            https://github.com/dataease/dataease
            4
          
          
            https://github.com/usememos/memos
            4
          
          
            https://github.com/mautic/mautic
            4
          
          
            https://github.com/swagger-api/swagger-ui
            4
          
          
            https://github.com/OpenTSDB/opentsdb
            4
          
          
            https://github.com/otake84/messagepack-rs
            4
          
          
            https://github.com/nilsteampassnet/TeamPass
            4
          
          
            https://github.com/pippo-java/pippo
            4
          
          
            https://github.com/liufee/cms
            4
          
          
            https://github.com/servo/rust-smallvec
            4
          
          
            https://github.com/cloudfoundry/uaa
            4
          
          
            https://github.com/CVEProject/cvelist
            4
          
          
            https://github.com/contao/contao
            4
          
          
            https://github.com/phpmyadmin/phpmyadmin
            4
          
          
            https://github.com/anoma/namada
            3
          
          
            https://github.com/pimcore/pimcore
            3
          
          
            https://github.com/pterodactyl/wings
            3
          
          
            https://github.com/dexidp/dex
            3
          
          
            https://github.com/Automattic/mongoose
            3
          
          
            https://github.com/shopware5/shopware
            3
          
          
            https://github.com/librenms/librenms
            3
          
          
            https://github.com/sqlalchemy/sqlalchemy
            3
          
          
            https://github.com/h2oai/h2o-3
            3
          
          
            https://github.com/TeamSeri0us/pocs
            3
          
          
            https://github.com/pytorch/serve
            3
          
          
            https://github.com/strapi/strapi
            3
          
          
            https://github.com/smarty-php/smarty
            3
          
          
            https://github.com/jbroadway/elefant
            3
          
          
            https://github.com/jflyfox/jfinal_cms
            3
          
          
            https://github.com/NVIDIA/NVFlare
            3
          
          
            https://github.com/rails/rails
            3
          
          
            https://github.com/kjur/jsrsasign
            3
          
          
            https://github.com/ibexa/core
            3
          
          
            https://github.com/better-auth/better-auth
            3
          
          
            https://github.com/capricorn86/happy-dom
            3
          
          
            https://github.com/publify/publify
            3
          
          
            https://github.com/simpleledger/slpjs
            3
          
          
            https://github.com/rubygems/rubygems.org
            3
          
          
            https://github.com/apache/shiro
            3
          
          
            https://github.com/feathersjs-ecosystem/feathers-sequelize
            3
          
          
            https://github.com/neorazorx/facturascripts
            3
          
          
            https://github.com/chaos-mesh/chaos-mesh
            3
          
          
            https://github.com/apache/camel
            3
          
          
            https://github.com/yaml/pyyaml
            3
          
          
            https://github.com/baserproject/basercms
            3
          
          
            https://github.com/spring-projects/spring-security
            3
          
          
            https://github.com/chakra-core/ChakraCore
            3
          
          
            https://github.com/mbechler/marshalsec
            3
          
          
            https://github.com/hazelcast/hazelcast
            3
          
          
            https://github.com/denoland/deno
            3
          
          
            https://github.com/mitmproxy/mitmproxy
            3
          
          
            https://github.com/octobercms/october
            3
          
          
            https://github.com/TribalSystems/Zenario
            3
          
          
            https://github.com/crewjam/saml
            3
          
          
            https://github.com/dotnet/aspnetcore
            3
          
          
            https://github.com/node-saml/xml-crypto
            3
          
          
            https://github.com/github/securitylab
            3
          
          
            https://github.com/sparklemotion/nokogiri
            3
          
          
            https://github.com/apache/dolphinscheduler
            3
          
          
            https://github.com/andrewhickman/id-map
            3
          
          
            https://github.com/NASA-AMMOS/AIT-Core
            3
          
          
            https://github.com/facebook/hermes
            3
          
          
            https://github.com/dwisiswant0/advisory
            3
          
          
            https://github.com/codeigniter4/CodeIgniter4
            3
          
          
            https://github.com/eosphoros-ai/DB-GPT
            3
          
          
            https://github.com/nukeviet/nukeviet
            3
          
          
            https://github.com/ezsystems/ezplatform-kernel
            3
          
          
            https://github.com/beego/beego
            3
          
          
            https://github.com/cosmos/ibc-go
            3
          
          
            https://github.com/pgadmin-org/pgadmin4
            3
          
          
            https://github.com/facade/ignition
            3
          
          
            https://github.com/ImpressCMS/impresscms
            3
          
          
            https://github.com/geoserver/geoserver
            3
          
          
            https://github.com/gofiber/fiber
            3
          
          
            https://github.com/vyperlang/vyper
            3
          
          
            https://github.com/actix/actix-web
            3
          
          
            https://github.com/mmaitre314/picklescan
            3
          
          
            https://github.com/rubygems/rubygems
            3
          
          
            https://github.com/shopware/shopware
            3
          
          
            https://github.com/centreon/centreon-archived
            3
          
          
            https://github.com/opencast/opencast
            3
          
          
            https://github.com/simplesamlphp/simplesamlphp
            3
          
          
            https://github.com/LetianYuan/My-CVE-Public-References
            3
          
          
            https://github.com/PHPMailer/PHPMailer
            3
          
          
            https://github.com/modoboa/modoboa
            3
          
          
            https://github.com/pytorch/pytorch
            3
          
          
            https://github.com/neuvector/neuvector
            3
          
          
            https://github.com/thlorenz/browserify-shim
            3
          
          
            https://github.com/sidorares/node-mysql2
            2
          
          
            https://github.com/dominictarr/libnested
            2
          
          
            https://github.com/fluxcd/flux2
            2
          
          
            https://github.com/simpleledger/slp-validate.js
            2
          
          
            https://github.com/apache/incubator-hugegraph
            2
          
          
            https://github.com/go-git/go-git
            2
          
          
            https://github.com/hashicorp/go-getter
            2
          
          
            https://github.com/scalyr/scalyr-agent-2
            2
          
          
            https://github.com/uasoft-indonesia/badaso
            2
          
          
            https://github.com/sjep/array
            2
          
          
            https://github.com/rubyzip/rubyzip
            2
          
          
            https://github.com/HtmlUnit/htmlunit
            2
          
          
            https://github.com/noear/solon
            2
          
          
            https://github.com/top-think/thinkphp
            2
          
          
            https://github.com/nats-io/jwt
            2
          
          
            https://github.com/deepjavalibrary/djl
            2
          
          
            https://github.com/js-data/js-data
            2
          
          
            https://github.com/Kozea/Radicale
            2
          
          
            https://github.com/Ericsson/codechecker
            2
          
          
            https://github.com/graphite-project/graphite-web
            2
          
          
            https://github.com/vufind-org/vufind
            2
          
          
            https://github.com/mpdavis/python-jose
            2
          
          
            https://github.com/nuxt/nuxt
            2
          
          
            https://github.com/unshiftio/url-parse
            2
          
          
            https://github.com/totaljs/framework
            2
          
          
            https://github.com/lightning-ai/pytorch-lightning
            2
          
          
            https://github.com/frohoff/ysoserial
            2
          
          
            https://github.com/Islandora/Crayfish
            2
          
          
            https://github.com/puma/puma
            2
          
          
            https://github.com/viz-rs/nano-id
            2
          
          
            https://github.com/javamelody/javamelody
            2
          
          
            https://github.com/rochacbruno/quokka
            2
          
          
            https://github.com/rest-client/rest-client
            2
          
          
            https://github.com/moby/buildkit
            2
          
          
            https://github.com/web2py/web2py
            2
          
          
            https://github.com/jfinal/jfinal
            2
          
          
            https://github.com/h2database/h2database
            2
          
          
            https://github.com/ionicabizau/parse-url
            2
          
          
            https://github.com/NVIDIA/gpu-operator
            2
          
          
            https://github.com/Microsoft/ChakraCore
            2