Go vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2014-8682Highgogs.io/gogs: SQL Injection in GogsCVE-2014-8681Mediumgogs.io/gogs: SQL Injection in gogs.io/gogsCVE-2018-15178Mediumgogs.io/gogs: Open RedirectCVE-2021-3283Highgithub.com/hashicorp/nomad: Improper Privilege Management in HashiCorp NomadCVE-2021-32575Mediumgithub.com/hashicorp/nomad: Improper network isolation in Hashicorp NomadCVE-2021-32701Highgithub.com/ory/oathkeeper: Incorrect Authorization in ORY OathkeeperCVE-2021-21303Mediumhelm.sh/helm/v3: Improper Neutralization of Special Elements in Output in helm.sh/helm/v3CVE-2020-4053Lowhelm.sh/helm/v3: Plugin archive directory traversal in HelmCVE-2021-32690Mediumhelm.sh/helm/v3: Helm passes repository credentials to alternate domainGHSA-6RG3-8H8X-5XFVMediumgithub.com/pterodactyl/wings: Unchecked hostname resolution could allow access to local network resources by users outside the local networkCVE-2021-32699Mediumgithub.com/pterodactyl/wings: Asymmetric Resource Consumption (Amplification) in Docker containers created by Wings CVE-2020-7919Highgithub.com/helm/helm: Helm uses crypto package vulnerable to panic from malformed X.509 certificateGHSA-QVP4-RPMR-XWRRHighgithub.com/ory/oathkeeper: Possible bypass of token claim validation when OAuth2 Introspection caching is enabledCVE-2018-20321Mediumgithub.com/rancher/rancher: Access Control BypassCVE-2020-28483Highgithub.com/gin-gonic/gin: Inconsistent Interpretation of HTTP Requests in github.com/gin-gonic/ginCVE-2020-35380Highgithub.com/tidwall/gjson: Denial of service in GJSONCVE-2020-12797Mediumgithub.com/hashicorp/consul: Incorrect Permission Assignment for Critical Resource in Hashicorp ConsulCVE-2020-27846Criticalgithub.com/crewjam/saml: XML Processing error in github.com/crewjam/samlGHSA-433W-MM6H-RV9PCriticalgithub.com/netlify/gotrue: Auth bypass in SAML providerCVE-2020-26284Highgithub.com/gohugoio/hugo: Hugo can execute a binary from the current directory on WindowsCVE-2020-26279Highgithub.com/ipfs/go-ipfs: Path traversal in github.com/ipfs/go-ipfsCVE-2020-26283Mediumgithub.com/ipfs/go-ipfs: Control character injection in console output in github.com/ipfs/go-ipfs CVE-2021-4236Criticalgithub.com/ecnepsnai/web: Websocket requests did not call AuthenticateMethodCVE-2021-23365Criticalgithub.com/tyktechnologies/tyk-identity-broker: Authentication Bypass in tyk-identity-brokerCVE-2021-31232Mediumgithub.com/cortexproject/cortex: Improper input validation in CNCF Cortex

Stop the waste.
Protect your environment with Kodem.