Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2022-26652Highgithub.com/nats-io/nats-server/v2: Arbitrary file write in nats-serverCVE-2022-24753Highgithub.com/stripe/stripe-cli: Code injection in Stripe CLI on windowsCVE-2022-24738Highgithub.com/tharsis/evmos: Account compromise in EvmosCVE-2022-24732Mediumgithub.com/foxcpp/maddy: Use of a Key Past its Expiration Date and Insufficient Session Expiration in Maddy Mail ServerCVE-2022-23327Highgithub.com/ethereum/go-ethereum: Denial of Service in Go-EthereumCVE-2022-23328Highgithub.com/ethereum/go-ethereum: Denial of Service in Go-EthereumCVE-2021-3762Highgithub.com/quay/claircore: Path traversal in claircoreCVE-2022-23648Highgithub.com/containerd/containerd: containerd CRI plugin: Insecure handling of image volumesGHSA-J34V-3552-5R7JMediumgithub.com/pomerium/pomerium: Multiple security issues in Pomerium's embedded envoyGHSA-P93V-M2R2-4387Mediumgithub.com/google/fscrypt: Denial of service via insufficient metadata validationGHSA-W4F8-FXQ2-J35VMediumgithub.com/google/fscrypt: Possible privilege escalation via bash completion scriptGHSA-CHXF-FJCF-7FWPMediumgithub.com/google/fscrypt: Possible filesystem space exhaustion by local usersGHSA-GV9J-4W24-Q7VXMediumgithub.com/coredns/coredns: Improper random number generation in github.com/coredns/corednsCVE-2022-24685Highgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to Allocation of Resources Without Limits or ThrottlingCVE-2022-25326Mediumgithub.com/google/fscrypt: Uncontrolled Resource Consumption in github.com/google/fscryptCVE-2022-25327Mediumgithub.com/google/fscrypt: User login denial of service in github.com/google/fscryptCVE-2022-25328Mediumgithub.com/google/fscrypt: Command injection in github.com/google/fscryptCVE-2022-24687Mediumgithub.com/hashicorp/consul: HashiCorp Consul Ingress Gateway Panic Can Shutdown ServersCVE-2021-4070Criticalgithub.com/v2fly/v2ray-core/v4: Off-by-one Error in v2fly/v2ray-coreCVE-2022-23652Highgithub.com/clastix/capsule-proxy: Improper Authentication in Capsule ProxyCVE-2022-23635Highistio.io/istio: Unauthenticated control plane denial of service attack in IstioCVE-2022-23650Highgithub.com/gravitl/netmaker: Use of Hard-coded Cryptographic Key in NetmakerCVE-2022-23649Lowgithub.com/sigstore/cosign: Improper Certificate Validation in CosignCVE-2019-16884Highgithub.com/opencontainers/runc: Incorrect Authorization in runcCVE-2022-0664Highgithub.com/gravitl/netmaker: Use of Hard-coded Cryptographic Key in Netmaker

Stop the waste.
Protect your environment with Kodem.