VulnSea

Tagged “go”

CVEs tagged go, newest first.

1732 CVEsRSS

CVE-2026-52857Medium· 5.5
1mo ago

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, unbounded json, yaml, and xml configuration-file parsers in parser.go can process an oversized non-file parser configur…

▾ Sunlitpterodactyl · github.com/pterodactyl/wingsEPSS 0.16%via NVD
CVE-2026-52855Critical· 9.9
1mo ago

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.12.3, {{config.}} placeholders in egg configuration-file templates allow a low-privileged user to read {{config.token}}, {{co…

▾ Midnightpterodactyl · github.com/pterodactyl/wingsEPSS 0.51%via NVD
CVE-2026-52856High· 7.5
1mo ago

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, a malformed packet received during the SFTP connection handshake causes a Go panic. This issue is fixed in version 1.13.0.

▾ Twilightpterodactyl · github.com/pterodactyl/wingsEPSS 0.61%via NVD
CVE-2026-65834Medium· 6.8
1mo ago

Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests

Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests

▾ Sunlitprojectcapsule · github.com/projectcapsule/capsuleEPSS 0.47%via GHSA
CVE-2026-65835Medium· 6.6
1mo ago

Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)

Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)

▾ Sunlitprojectcapsule · github.com/projectcapsule/capsuleEPSS 0.33%via GHSA
CVE-2026-55495Medium· 4.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the WOPI PUT_RELATIVE handler passes X-WOPI-SuggestedTarget to URI.JoinRaw as a path rather than a filename, allowing slash and dot-dot segments to escape th…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.38%via NVD
CVE-2026-55496Medium· 4.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, GET /api/v4/user/search calls SearchActive without adding a StatusActive predicate and serializes matches at RedactLevelUser, allowing any logged-in user to …

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.36%via NVD
CVE-2026-55497Medium· 6.5
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the built-in thumbnail and avatar image decoders limit compressed file size but do not limit decoded pixel dimensions, allowing an authenticated user to subm…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.53%via NVD
CVE-2026-55499Medium· 4.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, a single-file share event-stream subscription resolves the share root to the owner’s parent folder and subscribes to that folder topic, allowing an authentic…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.33%via NVD
CVE-2026-55502High· 7.1
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, POST /api/v4/admin/policy/oauth/signin requires only Admin.Read even though GetOauthRedirectService persists caller-supplied OneDrive secret and app_id value…

▾ Twilightcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.34%via NVD
CVE-2026-62323Medium· 6.3
1mo ago

Cloudreve is a self-hosted file management and sharing system

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, ViewerSessionValidation uses only the session-id prefix of a WOPI access token and does not enforce the requested viewer action, allowing a malicious or comp…

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4EPSS 0.31%via NVD
CVE-2026-67437High· 7.5
1mo ago

OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)

OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)

▾ TwilightOliveTin · github.com/OliveTin/OliveTinEPSS 0.64%via GHSA
CVE-2026-67439Medium· 4.3
1mo ago

OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output

OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output

▾ SunlitOliveTin · github.com/OliveTin/OliveTinEPSS 0.43%via GHSA
CVE-2026-67438Medium· 6.6
1mo ago

OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check

OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check

▾ SunlitOliveTin · github.com/OliveTin/OliveTinEPSS 1.6%via GHSA
CVE-2026-54693High
2mo ago

ZITADEL Users Can Self-Verify Email/Phone via API

ZITADEL Users Can Self-Verify Email/Phone via API

▾ Twilightzitadel · github.com/zitadel/zitadelEPSS 0.58%via GHSA
CVE-2026-54680Critical· 9.9
2mo ago

Logging operator automates the deployment and configuration of Kubernetes logging pipelines

Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior to 6.6.0, the Fluentd configuration renderer FluentRender in pkg/sdk/logging/model/render/fluent.go writes CRD strings such as Flow record…

▾ Midnightkube-logging · github.com/kube-logging/logging-operatorEPSS 0.78%via NVD
GHSA-xvg2-cgv6-6h7vHigh
2mo ago

netfoil: Incorrect block responses could lead to localhost traffic

netfoil: Incorrect block responses could lead to localhost traffic

▾ Twilighttinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
CVE-2026-54735Critical· 10.0
2mo ago

prebid-server's request forgery vulnerability allows for possible host environment data extraction

prebid-server's request forgery vulnerability allows for possible host environment data extraction

▾ Midnightprebid · github.com/prebid/prebid-server/v4EPSS 0.61%via GHSA
CVE-2026-62325Critical· 9.1
2mo ago

goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884)

goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884)

▾ Midnightpatrickhener · github.com/patrickhener/goshs/v2EPSS 0.59%via GHSA
CVE-2026-54719High· 7.5
2mo ago

goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx)

goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx)

▾ Twilightpatrickhener · github.com/patrickhener/goshsEPSS 0.47%via GHSA
CVE-2026-64863Critical· 9.1
2mo ago

goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite

goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite

▾ Midnightgoshs · goshs.de/goshs/v2EPSS 0.63%via GHSA
CVE-2026-66063Medium· 6.5
2mo ago

goshs has a Path Traversal issue

goshs has a Path Traversal issue

▾ Sunlitgoshs · goshs.de/goshs/v2EPSS 0.34%via GHSA
CVE-2026-54638High· 7.5
2mo ago

gotd/td is a T Telegram MTProto API client in Go

gotd/td is a T Telegram MTProto API client in Go. Prior to 0.145.1, proto.UnencryptedMessage.Decode in proto/unencrypted_message.go read attacker controlled dataLen from an unauthenticated MTProto unencrypted packet and allocated make([]…

▾ Twilightgotd · github.com/gotd/tdEPSS 0.63%via NVD
CVE-2026-54650High· 8.6
2mo ago

openhole exposes localhost to the internet in one command

openhole exposes localhost to the internet in one command. In 0.1.1 and earlier, openhole-server in internal/server/public_proxy.go forwarded r.URL.Path instead of preserving the original request target with r.URL.EscapedPath(), allowing…

▾ Twilightbablilayoub · github.com/bablilayoub/openholeEPSS 0.53%via NVD
CVE-2026-66064Medium· 5.3
2mo ago

goshs has ACL Bypass & Path Traversal

goshs has ACL Bypass & Path Traversal

▾ Sunlitpatrickhener · github.com/patrickhener/goshs/v2EPSS 0.45%via GHSA
CVE-2026-50570High· 8.5
2mo ago

Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption

Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption

▾ Twilightfission · github.com/fission/fissionEPSS 0.46%via GHSA
CVE-2026-50569Medium· 4.3
2mo ago

Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks

Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks

▾ Sunlitfission · github.com/fission/fissionEPSS 0.39%via GHSA
CVE-2026-50567High· 7.7
2mo ago

Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory

Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory

▾ Twilightfission · github.com/fission/fissionEPSS 0.45%via GHSA
CVE-2026-50568Low· 3.6
2mo ago

Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape

Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape

▾ Sunlitfission · github.com/fission/fissionEPSS 0.14%via GHSA
CVE-2026-49447Medium· 5.3
2mo ago

Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens

Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens

▾ Sunlitazukaar · github.com/azukaar/cosmos-serverEPSS 0.38%via GHSA
CVEs tagged “go” — page 17 · VulnSea