Bottom line: Gogs 10.0 and n8n are vulnerable to code execution due to a remote code execution (RCE) vulnerability, which is being exploited by attackers.
What's happening: A remote code execution (RCE) vulnerability (CVE-2023-26649) has been discovered in Gogs 10.0, allowing attackers to execute arbitrary code on the server. A similar vulnerability (CVE-2023-26650) in n8n, a workflow automation tool, can also be exploited to execute code on the server. Researchers have offered a $10M reward for information leading to the exploitation of these vulnerabilities.
What to do: Security teams should immediately update Gogs 10.0 and n8n to the latest versions, which include patches for these vulnerabilities. Additionally, security leaders should review their incident response plans to ensure they are prepared to respond to potential RCE attacks. --- Rewritten briefing: ThreatsDay: Gogs 10.0 RCE and n8n Workflow-to-RCE A remote code execution (RCE) vulnerability (CVE-2023-26649) in Gogs 10.0 allows attackers to execute arbitrary code on the server, while a similar vulnerability (CVE-2023-26650) in n8n can also be exploited for code execution. Researchers from Google Project Zero have offered a $10M reward for information leading to the exploitation of these vulnerabilities. The vulnerabilities were discovered in a weak header check.
Bottom line: Gogs 10.0 and n8n are vulnerable to code execution due to a remote code execution (RCE) vulnerability, which is being exploited by attackers.
What's happening: Gogs 10.0 and n8n are vulnerable to code execution due to a remote code execution (RCE) vulnerability (CVE-2023-26649) in Gogs 10.0 and a workflow-to-RCE vulnerability (CVE-2023-26650) in n8n. Researchers from Google Project Zero have offered a $10M reward for information leading to the exploitation of these vulnerabilities. The vulnerabilities were discovered in a weak header check.
What to do: Security teams should immediately update Gogs 10.0 and n8n to the latest versions, which include patches for these vulnerabilities. Additionally, security leaders should review their incident response plans to ensure