CVE-2026-26195
Gogs is an open source self-hosted Git service. Prior to version 0.14.2, stored xss is still possible through unsafe template rendering that mixes user input with safe plus permissive sanitizer handling of data urls. This issue has been patched in version 0.14.2.
Vendor
Product
CWE
Yayın Tarihi
2026-03-05 19:16:03
Güncelleme
2026-03-06 13:40:19
Source Identifier
security-advisories@github.com
KEV Date Added
-