Top Tweets for #GoGS

Gogs patched a critical zero-day argument injection flaw that could expose private repos, steal credentials, and enable remote code execution on internet-facing instances. #Gogs #RemoteCode #SourceCode
https://t.co/JjjiPZxRHv
Eine ungepatchte Schwachstelle im Git-Dienst #Gogs erlaubt authentifizierten Nutzern die Codeausführung auf Servern. Rapid7 veröffentlicht ein Exploit-Modul. https://t.co/IFQ1rcCCAT
Self-hosted #Gogs instances with public registration enabled are at highest risk right now.
Attackers can create their own accounts and fully compromise the server in minutes using the malicious branch name exploit.
A ready-to-use #Metasploit module makes this even more dangerous for exposed instances.
Disable public sign-ups and repository creation immediately until Gogs ships a patch.
⚠️ Critical UNPATCHED 9.4 RCE flaw in Gogs lets any authenticated user execute arbitrary code on the server.
An attacker can simply use a malicious branch name during the rebase-before-merge process. No admin rights or victim interaction needed.
No CVE issued. Full report and mitigations: https://t.co/zGT4yicz4W

Gogs Argument Injection RCE: Ketika --exec Flag Bocor ke git rebase - Ethical Hacking Indonesia.
#ethicalhackingindonesia #RCE #Gogs
https://t.co/v8bgypBcD0
Rapid7 discloses an unpatched Gogs argument injection vulnerability. Learn how a malicious branch name in a git rebase pull request grants full server RCE.
#Gogs #CyberSecurity #ZeroDay #RCE #Git #OpenSource #Infosec2026 #ThreatIntel #AppSec #SysAdmin
https://t.co/PHRyqqU9Ds

A critical 9.3 CVSS flaw (CVE-2026-25921) in Gogs' LFS handling allows attackers to silently overwrite repository files, risking severe supply-chain attacks.
#Gogs #CVE #CyberSecurity #SupplyChainAttack #LFS #Vulnerability #InfoSec #AppSec #DevSecOps
https://t.co/2Y881C7wpO

🥳 #Gogs 0.14.2 has just been released! Including security patches. Read more at https://t.co/sHFwSKSdVj
🥳 #Gogs 0.13.4 has just been released! Including security patches. Read more at https://t.co/SvWL0ti9Vd
CISAがGogsの致命的脆弱性CVE-2025-8110をMust Patch指定。既に実悪用中で、Gitサーバ侵害からコード改ざんやCI/CD侵入が可能。GogsはTier0資産。即アップデートか外部遮断必須。#CVE20258110 #Gogs #SupplyChain https://t.co/gnGbxormcQ
Zero-Day-Angriffe auf den #Git-Dienst #Gogs 🚨
Eine Symlink-#Schwachstelle erlaubt Remote Code Execution trotz früherer Fixes. Über 700 öffentlich erreichbare Instanzen sollen bereits kompromittiert sein. Betreiber sollten dringend handeln: https://t.co/Dc5W9Zi7P7

Critical #Gogs zero-day under attack, 700 servers hacked
https://t.co/jB2hguFrZQ
#securityaffairs #hacking
Trends for you
Most Popular Users

Elon Musk 
@elonmusk
240.2M followers

Barack Obama 
@barackobama
119.3M followers

Donald J. Trump 
@realdonaldtrump
111.6M followers

Cristiano Ronaldo 
@cristiano
109.3M followers

Narendra Modi 
@narendramodi
106.9M followers

Rihanna 
@rihanna
97.4M followers

NASA 
@nasa
92.1M followers

Justin Bieber 
@justinbieber
90.6M followers

KATY PERRY 
@katyperry
87M followers

Taylor Swift 
@taylorswift13
80.8M followers

Lady Gaga 
@ladygaga
72.4M followers

Kim Kardashian 
@kimkardashian
69.5M followers

Virat Kohli 
@imvkohli
68.9M followers

YouTube 
@youtube
68.6M followers

Bill Gates 
@billgates
63.5M followers

The Ellen Show
@theellenshow
62.5M followers

CNN 
@cnn
61.9M followers

Neymar Jr 
@neymarjr
61.5M followers

X 
@x
60.9M followers

Selena Gomez 
@selenagomez
60.1M followers
















