Gogs Vulnerability Enables Attackers to Silently Overwrite Large File Storage Objects
A critical security flaw has been discovered in a popular open-source, self-hosted Git service, allowing attackers to overwrite Large File Storage (LFS) objects secretly. Tracked as CVE-2026-25921, this maximum-severity vulnerability carries a CVSS 3.1 score of 10.0. It creates a severe risk for software supply-chain attacks. The flaw currently affects Gogs versions 0.14.1 and earlier, […]
The post Gogs Vulnerability Enables Attackers to Silently Overwrite Large File Storage Objects appeared first on Cyber Security News.