Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2022-2835Mediumgithub.com/coredns/coredns: coreDNS vulnerable to Improper Restriction of Communication Channel to Intended EndpointsCVE-2022-2837Mediumgithub.com/coredns/coredns: coreDNS vulnerable to Improper Restriction of Communication Channel to Intended EndpointsCVE-2023-26483Mediumgithub.com/russellhaering/gosaml2: gosaml2 vulnerable to Denial Of Service Via Deflate Decompression BombCVE-2023-24533Highfilippo.io/nistec: nistec has Incorrect Calculation in Multiplication of unreduced P-256 scalarsCVE-2022-3162Mediumgithub.com/kubernetes/kubernetes: Kubernetes vulnerable to path traversalCVE-2022-3294Highgithub.com/kubernetes/kubernetes: Kubernetes vulnerable to validation bypassCVE-2023-22462Mediumgithub.com/grafana/grafana: Grafana vulnerable to Stored Cross-site Scripting in Text pluginCVE-2023-26047Mediumgithub.com/kitabisa/teler-waf: teler-waf contains detection rule bypass via Entities payloadCVE-2023-26046Mediumgithub.com/kitabisa/teler-waf: teler-waf subject to Bypass of Common Web Attack Threat Rule with HTML Entities PayloadCVE-2023-0092Mediumgithub.com/juju/juju: Juju controller - Arbitrary file reading vulnerabilityCVE-2023-0507Mediumgithub.com/grafana/grafana: Grafana vulnerable to Cross-site ScriptingCVE-2023-0594Mediumgithub.com/grafana/grafana: Grafana vulnerable to Cross-site ScriptingCVE-2022-2024Criticalgogs.io/gogs: Gogs OS Command Injection vulnerabilityCVE-2023-25656Highgithub.com/notaryproject/notation-go: notation-go has excessive memory allocation on verificationCVE-2015-10085Highgithub.com/gopistolet/gopistolet: GoPistolet vulnerable to Improper Resource Shutdown or ReleaseCVE-2023-0934Mediumgithub.com/answerdev/answer: Answer vulnerable to Cross-site ScriptingGHSA-R2H5-3HGW-8J34Highgithub.com/edgelesssys/constellation/v2: User data in TPM attestation vulnerable to MITMCVE-2021-32163Criticalmosn.io/mosn: Privilege escalation in MOSNCVE-2022-41723Highgolang.org/x/net: golang.org/x/net vulnerable to Uncontrolled Resource ConsumptionCVE-2022-41727Mediumgolang.org/x/image: Uncontrolled Resource Consumption in golang.org/x/imageCVE-2023-0821Mediumgithub.com/hashicorp/nomad: Uncontrolled Resource Consumption in Hashicorp NomadCVE-2023-0475Mediumgithub.com/hashicorp/go-getter: Data Amplification in HashiCorp go-getterCVE-2023-23947Criticalgithub.com/argoproj/argo-cd: Users with any cluster secret update access may update out-of-bounds cluster secretsCVE-2023-25153Mediumgithub.com/containerd/containerd: OCI image importer memory exhaustion in github.com/containerd/containerdCVE-2023-25173Mediumgithub.com/containerd/containerd: Supplementary groups are not set up properly in github.com/containerd/containerd

Stop the waste.
Protect your environment with Kodem.