CVE-2026-26194 | Gogs up to 0.14.1 argument injection (GHSA-v9vm-r24h-6rqm / WID-SEC-2026-0623)
A vulnerability, which was classified as critical, was found in Gogs up to 0.14.1. The impacted element is an unknown function. Executing a manipulation can lead to argument injection.
This vulnerability is handled as CVE-2026-26194. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.