golang.org/x/text vulnerabilities
CVEs whose affected-version data names the golang.org/x/text package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-56852High· 7.5PoCInfinite loop on invalid input in golang.org/x/text
Infinite loop on invalid input in golang.org/x/text
▾ Midnightx · golang.org/x/textEPSS 0.47%via OSV
CVE-2022-32149High· 7.5golang.org/x/text/language Denial of service via crafted Accept-Language header
golang.org/x/text/language Denial of service via crafted Accept-Language header
▾ Twilightx · golang.org/x/textEPSS 1.6%via OSV