Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-57Q7-RXQQ-7VGPMediumgithub.com/github/git-sizer: On Windows, `git-sizer` might run a `git` executable within the repository being analyzedCVE-2021-20206Highgithub.com/containernetworking/cni: containernetworking/cni improper limitation of path nameCVE-2019-16097Mediumgithub.com/goharbor/harbor: Missing Authorization in HarborCVE-2019-9039Criticalgithub.com/couchbase/sync_gateway: SQL Injection in Couchbase Sync GatewayCVE-2019-12243Highistio.io/istio: Istio may not check inbound TCP connections against istio-policyCVE-2019-3564Highgithub.com/facebook/fbthrift: Improper Input Validation and Excessive Iteration in Go Facebook ThriftCVE-2021-27358Mediumgithub.com/grafana/grafana: Denial of service in GrafanaCVE-2020-13401Mediumgithub.com/docker/docker-ce: Improper Input Validation in Docker EngineCVE-2020-13597Mediumgithub.com/projectcalico/calico: Exposure of Sensitive Information to an Unauthorized Actor and Insertion of Sensitive Information Into Sent Data in CalicoCVE-2020-13379Mediumgithub.com/grafana/grafana: Server Side Request Forgery in GrafanaCVE-2014-5277Mediumgithub.com/docker/docker: Man-in-the-Middle (MitM)CVE-2020-7010Highgithub.com/elastic/cloud-on-k8s: Cryptographic Issues in ECKCVE-2020-8555Mediumk8s.io/kubernetes: Server Side Request Forgery (SSRF) in KubernetesCVE-2020-2023Mediumgithub.com/kata-containers/agent: Improper Privilege Management and Execution with Unnecessary Privileges in Kata ContainersCVE-2020-2026Highgithub.com/kata-containers/runtime: Link Following in Kata RuntimeCVE-2020-12758Mediumgithub.com/hashicorp/consul: Denial of Service (DoS) in HashiCorp ConsulCVE-2020-16844Mediumistio.io/istio: Authorization bypass in IstioCVE-2020-27195Criticalgithub.com/hashicorp/nomad: Use After Free in HashiCorp NomadCVE-2020-28348Mediumgithub.com/hashicorp/nomad: Path Traversal in HashiCorp NomadCVE-2020-8568Mediumsigs.k8s.io/secrets-store-csi-driver: Directory traversal in Kubernetes Secrets Store CSI DriverCVE-2020-8569Mediumgithub.com/kubernetes-csi/external-snapshotter/v2: NULL Pointer Dereference in Kubernetes CSI snapshot-controllerCVE-2021-25834Highgithub.com/cosmos/ethermint: Authentication bypass by capture-replay in github.com/cosmos/ethermintCVE-2021-25835Highgithub.com/cosmos/ethermint: Authentication bypass by capture-replay in github.com/cosmos/ethermintCVE-2020-28466Highgithub.com/nats-io/nats-server: Denial of service in github.com/nats-io/nats-server/serverCVE-2020-24359Highgithub.com/hashicorp/vault-ssh-helper: Improper Input Validation in vault-ssh-helper

Stop the waste.
Protect your environment with Kodem.