CVE-2026-52804
NONE—CVSS v3
—CVSS v2
0.50%
EPSS (exploit probability)
CWE-193CWE
Description
Gogs is an open source self-hosted Git service. Prior to 0.14.3, a repository admin collaborator can escalate their privileges to owner-level access by exploiting an off-by-one error in the ChangeCollaborationAccessMode function. This vulnerability is fixed in 0.14.3.
Affected routers (0)
No routers currently mapped to this CVE in our database.