Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-8110 — Detection template for CVE-2025-8110 | Kitploit
Tools/GitHubGitHub/rxerium/cve-2025-8110
Vulnerability ScannersWeb Vulnerability ScannersVulnerability AnalysisExploitationWeb SecurityPenetration Testing
GitHubrxerium/cve-2025-8110

CVE-2025-8110

Detection template for CVE-2025-8110

View Repository
2289 months agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Locked CVE-2025-8110

Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.

Search How does this detection method work?

Extracts the Gogs version from the footer of /user/login via regex (Gogs Version: X.X.X) and flags instances running version 0.13.3 or earlier as vulnerable to CVE-2025-8110.

Rocket How do I run this script?

  1. Download and install Nuclei.
  2. Clone this repostory to your local system.
  3. Run the following command:
nuclei -u <ip|fqdn> -t template.yaml

Or if you would like to scan a list of hosts, execute:

nuclei -l <list.txt> -t template.yaml

Example output

Screenshot 2025-12-11 at 10 52 38 am

Books References

  • https://www.wiz.io/blog/wiz-research-gogs-cve-2025-8110-rce-exploit
  • https://github.com/projectdiscovery/nuclei

Warning Disclaimer

Use at your own risk, I will not be responsible for illegal activities you conduct on infrastructure you do not own or have permission to scan.


License License

This project is licensed under the MIT License.

Contact Contact

If you have any questions about this vulnerability detection script please reach out to me via Signal.

If you would like to connect, I am mostly active on Twitter/X and LinkedIn.

Download Tool