CVE-2025-47943 | Gogs up to 0.14.0+dev public/plugins/ cross site scripting (GHSA-xh32-cx6c-cp4v / EUVD-2025-18995)
A vulnerability classified as problematic was found in Gogs up to 0.14.0+dev. Affected by this vulnerability is an unknown functionality of the file public/plugins/. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-47943. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.