
CVE-2026-23632 Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, the endpoint "PUT /repos/:owner/:repo/contents/*" does not require write permissions and … https://www.cve.org/CVERecord?id=CVE-2026-23632
Post summary
The passage announces CVE-2026-23632 for Gogs, describing a permission bypass in the content creation endpoint that allows write operations without proper authorization.
