by @jakaba
18 Jul 2024

Argument injection in Gogs SSH server (CVE-2024-39930)

by @jakaba
18 Jul 2024

Argument injection in Gogs SSH server (CVE-2024-39930)

CVEs

9.9 Critical Severity

Screenshots from the blog posts

images/clyr5brxmkxxs1hon2skf06xf.pngimages/clyr5brxmkxxs1hon2skf06xf.png

Summary

Gogs, a popular self-hosted code repository tool written in Go, faces critical vulnerabilities like CVE-2024-39930. This flaw in its SSH server enables attackers to compromise systems, posing risks of code theft or insertion of malicious code, highlighting the need for immediate mitigation measures

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

74 posts

Total vcoins

64.3K

Social media links

Comments (0)