Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2018-18926Criticalcode.gitea.io/gitea: Gitea Remote Code Execution (RCE)CVE-2018-1002101Mediumk8s.io/kubernetes: Kubernetes Arbitrary Command InjectionCVE-2019-3792Highgithub.com/concourse/concourse: Pivotal Concourse SQL Injection VulnerabilityCVE-2018-1098Highgo.etcd.io/etcd/v3: etcd Cross-site Request Forgery (CSRF)CVE-2018-15798Mediumgithub.com/concourse/concourse: Pivotal Concourse Open Redirect in Login FlowCVE-2018-1000803Mediumgithub.com/go-gitea/gitea: Gitea Exposes Private Email AddressesCVE-2019-11228Highgithub.com/go-gitea/gitea: Gitea Improper Input ValidationCVE-2019-14802Mediumgithub.com/hashicorp/nomad: Hashicorp Nomad Information Exposure Through Environmental VariablesCVE-2019-11229Highgithub.com/go-gitea/gitea: Gitea Remote Code ExecutionCVE-2014-9357Highgithub.com/docker/docker: Arbitrary Code ExecutionCVE-2016-1905Highgithub.com/kubernetes/kubernetes: Access Restriction Bypass in kubernetesCVE-2019-10214Mediumgithub.com/containers/image: containers/image library Insufficiently Protects CredentialsCVE-2019-11244Mediumk8s.io/client-go: Kubernetes Unsafe Cacheing CVE-2021-28484Highgithub.com/Yubico/yubihsm-connector: Infinite loop in Yubico yubihsm-connectorCVE-2020-8551Mediumk8s.io/kubernetes: Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in KubernetesCVE-2020-8552Mediumk8s.io/apiserver: Kubernetes API Server DoS Via API RequestsCVE-2015-3627Mediumgithub.com/docker/docker: Symlink Attack in Libcontainer and Docker EngineCVE-2021-29136Mediumgithub.com/opencontainers/umoci: Improper input validation in umociCVE-2014-0177Mediumgithub.com/github/hub: Hub Package Arbitrary File OverwriteCVE-2021-3127Criticalgithub.com/nats-io/jwt/v2: nats-io/jwt not enforcing checking of Import token permissionsCVE-2014-9358Mediumgithub.com/docker/docker: Directory Traversal in DockerCVE-2014-6407Highgithub.com/docker/docker: Arbitrary Code Execution in DockerCVE-2014-3499Highgithub.com/docker/docker: Privilege Escalation in DockerCVE-2020-13246Highgithub.com/go-gitea/gitea: Denial of Service in GiteaCVE-2021-21272Highgithub.com/deislabs/oras: Zip slip directory exploit in github.com/deislabs/oras

Stop the waste.
Protect your environment with Kodem.