sipgo vulnerabilities
CVEs whose affected-version data names the sipgo package (go). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-77322High· 7.5PoCSIPGO is a library for writing SIP services in the GO language
SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, WSConnection.Read in sip/transport_ws.go creates a wsutil.Reader without setting MaxFrameSize, allowing NextFrame to accept a client-controlled header.Length…
▾ Midnightemiago · sipgoEPSS 0.61%via NVD
CVE-2026-58268High· 7.5SIPGO is a library for writing SIP services in the GO language
SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.1, ParserStream.parseSingle in sip/parser_stream.go allocates a SIP body buffer from the client-controlled Content-Length header before ParseMaxMessageLength is…
▾ Twilightemiago · sipgoEPSS 0.61%via NVD