Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2023-6202Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Improper Access Control vulnerabilityCVE-2023-48369Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Uncontrolled Resource Consumption vulnerabilityCVE-2023-45223Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Exposure of Sensitive Information to an Unauthorized Actor vulnerabilityCVE-2023-48268Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Uncontrolled Resource Consumption vulnerabilityCVE-2023-40703Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Uncontrolled Resource Consumption vulnerabilityCVE-2023-35075Lowgithub.com/mattermost/mattermost/server/v8: Mattermost Injection vulnerabilityCVE-2023-47865Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Improper Access Control vulnerabilityCVE-2023-47168Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Open Redirect vulnerabilityCVE-2023-43754Mediumgithub.com/mattermost/mattermost/server/v8: Mattermost Exposure of Sensitive Information to an Unauthorized Actor vulnerabilityCVE-2023-48312Criticalgithub.com/projectcapsule/capsule-proxy: Capsule Proxy Authentication bypass using an empty tokenCVE-2023-46575Criticalgithub.com/layer5io/meshery: SQL injection vulnerability in MesheryGHSA-2C7C-3MJ9-8FQHMediumgithub.com/go-jose/go-jose/v3: Decryption of malicious PBES2 JWE objects can consume unbounded system resourcesCVE-2023-46402Highgithub.com/whilp/git-urls: Inefficient Regular Expression Complexity in git-urlsCVE-2023-47025Highgithub.com/free5gc/free5gc: Free5gc allows a local attacker to cause a denial of service via the free5gc-compose componentCVE-2023-47345Highgithub.com/free5gc/free5gc: free5gc Buffer Overflow vulnerabilityCVE-2023-47630Highgithub.com/kyverno/kyverno: Attacker can cause Kyverno user to unintentionally consume insecure imageCVE-2023-5528Highk8s.io/kubernetes: Kubernetes Improper Input Validation vulnerabilityCVE-2023-47122Mediumgithub.com/sigstore/gitsign: Gitsign's Rekor public keys fetched from upstream API instead of local TUF client.CVE-2023-46132Highgithub.com/hyperledger/fabric: Fabric vulnerable to crosslinking transaction attackGHSA-RJJM-X32P-M3F7Lowgithub.com/consensys/gnark: gnark's range checker gadget allows wider inputs up to word alignmentCVE-2023-47108Highgo.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc: otelgrpc DoS vulnerability due to unbound cardinality metrics CVE-2023-47390Highgithub.com/juanfont/headscale: Headscale writes bearer tokens to info-level logsCVE-2023-5954Highgithub.com/hashicorp/vault: HashiCorp Vault Missing Release of Memory after Effective Lifetime vulnerabilityGHSA-R2XV-VPR2-42M9Lowgithub.com/slsa-framework/slsa-verifier/v2: slsa-verifier vulnerable to mproper validation of npm's publish attestationsCVE-2023-47111Highgithub.com/zitadel/zitadel: ZITADEL race condition in lockout policy execution

Stop the waste.
Protect your environment with Kodem.