Junglewise Threat Intelligence

CVE-2025-47943: GO-2025-3778 - Gogs XSS allowed by stored call in PDF renderer in gogs.io/gogs

CVE-2025-47943 · Severity: low · CVSS 3.1 · Published 2025-07-28

Technologies: github.com/gogs/gogs (Go), gogs.io/gogs (Go). Vendors: Go.

Executive brief

Gogs XSS allowed by stored call in PDF renderer in gogs.io/gogs

Affected products

  • Go github.com/gogs/gogs
  • Go gogs.io/gogs

Related threats