
CVE-2026-26195 Gogs is an open source self-hosted Git service. Prior to version 0.14.2, stored xss is still possible through unsafe template rendering that mixes user input with saf… https://www.cve.org/CVERecord?id=CVE-2026-26195
Post summary
The post announces CVE‑2026‑26195 for Gogs, describing a stored XSS flaw caused by unsafe template rendering in versions earlier than 0.14.2.
