Gogs Vulnerability Enables Attackers to Silently Overwrite Large File Storage Objects

A critical security flaw has been discovered in a popular open-source, self-hosted Git service, allowing attackers to overwrite Large File Storage (LFS) objects secretly. Tracked as CVE-2026-25921, this maximum-severity vulnerability carries a CVSS 3.1 score of 10.0. It creates a severe risk for software supply-chain attacks. The flaw currently affects Gogs versions 0.14.1 and earlier, […]

The post Gogs Vulnerability Enables Attackers to Silently Overwrite Large File Storage Objects appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: