CVE-2026-22592

Publication date

2026-02-06 17:42:26

Family

GitHub_M

State

PUBLISHED

Description

Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, an authenticated user can cause a DOS attack. If one of the repo files is deleted before synchronization, it will cause the application to crash. This issue has been patched in versions 0.13.4 and 0.14.0+dev.