Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2022-4808Highgithub.com/usememos/memos: usememos/memos Improper Privilege Management vulnerabilityCVE-2022-4810Mediumgithub.com/usememos/memos: usememos/memos Improper Access Control vulnerabilityCVE-2022-4806Mediumgithub.com/usememos/memos: usememos/memos Improper Access Control vulnerabilityCVE-2022-4807Mediumgithub.com/usememos/memos: usememos/memos Improper Access Control vulnerabilityCVE-2022-4811Mediumgithub.com/usememos/memos: usememos/memos Improper Authorization vulnerabilityCVE-2022-4804Mediumgithub.com/usememos/memos: usememos/memos Improper Authorization vulnerabilityCVE-2022-4803Highgithub.com/usememos/memos: usememos/memos Improper Access Control vulnerabilityCVE-2022-4801Mediumgithub.com/usememos/memos: usememos/memos has Insufficient Granularity of Access ControlCVE-2022-4802Mediumgithub.com/usememos/memos: usememos/memos vulnerable to Improper AuthorizationCVE-2022-4798Mediumgithub.com/usememos/memos: usememos/memos Improper Authorization vulnerabilityCVE-2022-4799Mediumgithub.com/usememos/memos: usememos/memos Improper Authentication vulnerabilityCVE-2022-4797Mediumgithub.com/usememos/memos: usememos/memos vulnerable Improper Restriction of Excessive Authentication Attempts CVE-2022-4800Mediumgithub.com/usememos/memos: usememos/memos vulnerable to Improper Verification of Source of a Communication ChannelCVE-2022-4796Highgithub.com/usememos/memos: usememos/memos makes Incorrect Use of Privileged APIsCVE-2020-36563Mediumgithub.com/RobotsAndPencils/go-saml: go-saml's XML Digital Signatures use SHA-1CVE-2020-36562Highgithub.com/shiyanhui/dht: shiyanhui/dht vulnerable to Uncontrolled Resource ConsumptionCVE-2022-3346Highgithub.com/peterzen/goresolver: go-resolver vulnerable to attacker-controlled domains due to unvalidated RRSIG RRsCVE-2022-3347Highgithub.com/peterzen/goresolver: go-resolver's DNSSEC validation not performed correctlyCVE-2018-25046Criticalgithub.com/cloudfoundry/archiver: Cloud Foundry Archiver vulnerable to path traversalCVE-2022-2582Mediumgithub.com/aws/aws-sdk-go: AWS S3 Crypto SDK sends an unencrypted hash of the plaintext alongside the ciphertext as a metadata fieldCVE-2020-36559Highgithub.com/go-aah/aah: ahh vulnerable to Path TraversalCVE-2013-10005Highgithub.com/btcsuite/go-socks: socks Infinite Loop vulnerabilityCVE-2019-25073Highgithub.com/goadesign/goa: Goa vulnerable to path traversalCVE-2015-10004Highgithub.com/robbert229/jwt: robbert229/jwt's token validation methods vulnerable to a timing side-channel during HMAC comparisonCVE-2014-125026Criticalgithub.com/cloudflare/golz4: LZ4 vulnerable to Out-of-bounds Write

Stop the waste.
Protect your environment with Kodem.