VDB

GO-2026-4619

GO-2026-4619 PUBLISHED

Gogs: Access tokens get exposed through URL params in API requests in gogs.io/gogs

Affected Products

VendorProductVersions
gogs.iogogs0, 0

Timeline

  • Mar 10, 2026 CVE Published
  • Mar 23, 2026 CVE Updated
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›