{"schema_version":"1.7.3","id":"GO-2024-3355","published":"2025-01-07T16:03:18Z","modified":"2026-03-03T04:56:09.536327Z","aliases":["CVE-2024-54148","GHSA-r7j8-5h9c-f6fx"],"summary":"Remote Command Execution in file editing in gogs in gogs.io/gogs","details":"Remote Command Execution in file editing in gogs in gogs.io/gogs","affected":[{"package":{"name":"gogs.io/gogs","ecosystem":"Go","purl":"pkg:golang/gogs.io/gogs"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"0.13.1"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2024-3355.json"}}],"references":[{"type":"ADVISORY","url":"https://github.com/gogs/gogs/security/advisories/GHSA-r7j8-5h9c-f6fx"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-54148"},{"type":"WEB","url":"https://github.com/gogs/gogs/commit/c94baec9ca923f38c19f0c7c5af722b9ec04022a"},{"type":"WEB","url":"https://github.com/gogs/gogs/issues/7582"},{"type":"WEB","url":"https://github.com/gogs/gogs/pull/7857"}],"database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2024-3355"}}