Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2022-4683Mediumgithub.com/usememos/memos: usememos/memos missing Secure cookie attributeCVE-2022-4687Highgithub.com/usememos/memos: usememos/memos makes Incorrect Use of Privileged APIsCVE-2022-4689Highgithub.com/usememos/memos: usememos/memos vulnerable to account takeover due to improper access controlCVE-2022-4685Mediumgithub.com/usememos/memos: usememos/memos vulnerable to improper access controlCVE-2022-4690Mediumgithub.com/usememos/memos: usememos/memos vulnerable to stored cross-site scripting (XSS)CVE-2022-47931Criticalgithub.com/bnb-chain/tss-lib: Collision of hash values in github.com/bnb-chain/tss-libCVE-2020-36625Highgithub.com/destinygg/chat: destiny.gg chat vulnerable to cross-site request forgeryCVE-2022-4643Criticalgithub.com/sajari/docconv: docconv OS Command Injection vulnerabilityCVE-2021-4272Mediumgithub.com/studygolang/studygolang: studygolang vulnerable to cross-site scriptingCVE-2021-4263Mediumgithub.com/leanote/leanote: leanote vulnerable to cross-site scriptingCVE-2022-23551Mediumgithub.com/Azure/aad-pod-identity: AAD Pod Identity obtaining token with backslashCVE-2022-47633Highgithub.com/kyverno/kyverno: kyverno verifyImages rule bypass possible with malicious proxy/registryCVE-2022-23542Highgithub.com/openfga/openfga: OpenFGA Authorization BypassCVE-2022-39304Mediumgithub.com/bradleyfalzon/ghinstallation: ghinstallation returns app JWT in error responsesCVE-2022-23536Mediumgithub.com/cortexproject/cortex: Cortex's Alertmanager can expose local files content via specially crafted configCVE-2022-4609Mediumgithub.com/usememos/memos: Memos Cross-site Scripting vulnerabilityCVE-2022-45969Criticalgithub.com/alist-org/alist/v3: Alist vulnerable to Path TraversalCVE-2022-23526Mediumhelm.sh/helm/v3: Helm vulnerable to denial of service through schema fileCVE-2022-23525Mediumhelm.sh/helm/v3: Helm vulnerable to denial of service through through repository index fileCVE-2022-23524Mediumhelm.sh/helm/v3: Helm vulnerable to denial of service through string value parsingCVE-2022-43996Mediumgithub.com/csaf-poc/csaf_distribution: csaf-poc/csaf_distribution Cross-site Scripting vulnerabilityCVE-2022-45970Mediumgithub.com/alist-org/alist/v3: Alist Cross-site Scripting vulnerabilityCVE-2022-45968Highgithub.com/alist-org/alist/v3: AList vulnerable to Improper Preservation of PermissionsCVE-2022-23511Highgithub.com/aws/amazon-cloudwatch-agent: Amazon CloudWatch Agent for Windows has Privilege Escalation VectorCVE-2022-41717Mediumgolang.org/x/net/http2: golang.org/x/net/http2 vulnerable to possible excessive memory growth

Stop the waste.
Protect your environment with Kodem.