Jia Chen
5 exploits
Active since Feb 2026
Gogs: Open Redirect via redirect_to in Gogs
CVSS 5.4
Gogs: Write to readonly repositories using receive-pack + service=git-upload-pack confusion
Gogs: UploadRepoFiles writes outside repo working tree via committed parent sym
Gogs < 0.14.3 - Unauthenticated Cross-Site Scripting via ipynb Sanitizer
Gogs < 0.14.0 - Authorization Bypass via DeleteComment API
CVSS 2.7