CVE-2024-39933: Gogs

High severity, CVSS 7.7. EPSS: 0.7% chance of exploitation in the next 30 days.

Gogs through 0.13.0 allows argument injection during the tagging of a new release.

Affected products

  • Gogs Gogs: up to and including 0.13.0

Published 2024-07-04. Last modified 2026-06-17.