Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-5X4G-Q5RC-36JPLowgo.etcd.io/etcd/client/pkg/v3: Etcd pkg Insecure ciphers are allowed by defaultGHSA-G5P6-327M-3FXXHighgithub.com/siderolabs/talos: Talos Linux ships runc vulnerable to the escape to the host attackCVE-2024-24557Mediumgithub.com/docker/docker: Classic builder cache poisoningCVE-2024-24747Highgithub.com/minio/minio: Minio unsafe default: Access keys inherit `admin` of root user, allowing privilege escalationCVE-2024-0831Mediumgithub.com/hashicorp/vault: Hashicorp Vault may expose sensitive log informationCVE-2021-43798Highgithub.com/grafana/grafana: Grafana path traversalCVE-2022-21703Mediumgithub.com/grafana/grafana/pkg/web: Grafana Cross Site Request Forgery (CSRF)CVE-2021-41091Mediumgithub.com/moby/moby: Moby (Docker Engine) Insufficiently restricted permissions on data directoryCVE-2018-12099Mediumgithub.com/grafana/grafana: Grafana Cross-site Scripting (XSS)CVE-2018-12608Highgithub.com/docker/docker: Docker Authentication BypassCVE-2021-21334Mediumgithub.com/containerd/containerd: containerd environment variable leakCVE-2021-3282Highgithub.com/hashicorp/vault: Improper Authentication in HashiCorp VaultCVE-2021-21285Mediumgithub.com/moby/moby: moby docker daemon crash during image pull of malicious imageCVE-2021-21284Mediumgithub.com/moby/moby: moby Access to remapped root allows privilege escalation to real rootCVE-2020-27534Mediumgithub.com/moby/moby: Path Traversal in Moby builderCVE-2020-35177Mediumgithub.com/hashicorp/vault: Enumeration of users in HashiCorp VaultCVE-2020-28053Mediumgithub.com/hashicorp/consul: Privilege Escalation in HashiCorp ConsulCVE-2020-25201Highgithub.com/hashicorp/consul: Denial of service in HashiCorp ConsulCVE-2019-19499Mediumgithub.com/grafana/grafana: Grafana Arbitrary File ReadCVE-2024-21626Highgithub.com/opencontainers/runc: runc vulnerable to container breakout through process.cwd trickery and leaked fdsCVE-2024-23650Mediumgithub.com/moby/buildkit: BuildKit vulnerable to possible panic when incorrect parameters sent from frontendCVE-2024-23651Highgithub.com/moby/buildkit: BuildKit vulnerable to possible race condition with accessing subpaths from cache mountsCVE-2024-23652Criticalgithub.com/moby/buildkit: BuildKit vulnerable to possible host system access from mount stub cleanerCVE-2024-23653Criticalgithub.com/moby/buildkit: Buildkit's interactive containers API does not validate entitlements checkCVE-2024-24579Mediumgithub.com/anchore/stereoscope: stereoscope vulnerable to tar path traversal when processing OCI tar archives

Stop the waste.
Protect your environment with Kodem.