VulnSea

Tagged “go”

CVEs tagged go, newest first.

1732 CVEsRSS

CVE-2026-54063High· 7.5
2mo ago

Excelize: Unbounded Row Index Allocation in Worksheet Parser (checkSheet OOM/Panic DoS)

Excelize: Unbounded Row Index Allocation in Worksheet Parser (checkSheet OOM/Panic DoS)

▾ Twilightxuri · github.com/xuri/excelize/v2EPSS 0.61%via GHSA
CVE-2026-54068Medium· 5.9
2mo ago

SiYuan: Unauthenticated SQLite Data Exfiltration via Template Injection in /api/icon/getDynamicIcon

SiYuan: Unauthenticated SQLite Data Exfiltration via Template Injection in /api/icon/getDynamicIcon

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.38%via GHSA
CVE-2026-54069CriticalPoC
2mo ago

SiYuan: Unauthenticated Admin API Access via Blanket chrome-extension:// Origin Allowlist

SiYuan: Unauthenticated Admin API Access via Blanket chrome-extension:// Origin Allowlist

▾ Abyssalsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.58%via GHSA
CVE-2026-54089Critical· 9.1
2mo ago

File Browser: Authentication Bypass via Proxy Auth Header Forgery

File Browser: Authentication Bypass via Proxy Auth Header Forgery

▾ Midnightfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.61%via GHSA
CVE-2026-54070High· 7.1
2mo ago

SiYuan: Stored XSS in Bazaar marketplace via package README event handlers

SiYuan: Stored XSS in Bazaar marketplace via package README event handlers

▾ Twilightsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.30%via GHSA
CVE-2026-54088CriticalPoC
2mo ago

File Browser: Command Injection via Authentication Hook Shell Substitution (Pre-Authentication RCE)

File Browser: Command Injection via Authentication Hook Shell Substitution (Pre-Authentication RCE)

▾ Abyssalfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.76%via GHSA
CVE-2026-54158Critical· 9.9
2mo ago

SiYuan: Stored XSS to RCE via attribute-view cell rendering in genAVValueHTML()

SiYuan: Stored XSS to RCE via attribute-view cell rendering in genAVValueHTML()

▾ Midnightsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.51%via GHSA
CVE-2026-55252Medium
2mo ago

OpenRun: Redirect URL validation bypass using  //host  paths leads to Open Redirect

OpenRun: Redirect URL validation bypass using  //host  paths leads to Open Redirect

▾ Sunlitopenrundev · github.com/openrundev/openrunvia GHSA
CVE-2026-55874High· 7.7
2mo ago

SeaweedFS: github.com/seaweedfs/seaweedfs: SeaweedFS: Information disclosure via S3 API gateway path traversal (CVE-2026-55874)

A flaw was found in SeaweedFS, a distributed storage system. The S3 API gateway in SeaweedFS does not properly validate `X-Amz-Copy-Source` headers, specifically failing to reject "dot-dot" path segments. This allows an authenticated user,…

▾ TwilightRed Hat · Cryostat 4 on RHEL 9EPSS 0.61%via CSAF
CVE-2026-42505Medium· 5.3
2mo ago

Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of pre-shared key identities in the unencrypted client hello.

Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of pre-shared key identities in the unencrypted client hello.

▾ Sunlitgolang · goEPSS 0.41%via NVD
CVE-2026-39822High· 7.8
2mo ago

On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the final path component of the a path is a symbolic link and the path ends in /

On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the final path component of the a path is a symbolic link and the path ends in /. For example, 'root.Open("symlink/")' will o…

▾ Twilightgolang · goEPSS 0.18%via NVD
CVE-2026-50197High· 8.7
2mo ago

Skipper: opaAuthorizeRequestWithBody filter bypasses OPA policy on Transfer-Encoding — chunked / HTTP/2 requests

Skipper: opaAuthorizeRequestWithBody filter bypasses OPA policy on Transfer-Encoding — chunked / HTTP/2 requests

▾ Twilightzalando · github.com/zalando/skipperEPSS 0.55%via GHSA
GO-2026-5932None
2mo ago

The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues

The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues

▾ Sunlitx · golang.org/x/cryptovia OSV
GO-2026-5923None
2mo ago

Coder's workspace agent API insecure redirect handling allowed cross-agent file read and write in github.com/coder/coder

Coder's workspace agent API insecure redirect handling allowed cross-agent file read and write in github.com/coder/coder

▾ Sunlitcoder · github.com/coder/codervia OSV
GO-2026-5764None
2mo ago

DoS due to Panic in AWS SDK for Go v2 SDK EventStream Decoder in github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream

DoS due to Panic in AWS SDK for Go v2 SDK EventStream Decoder in github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream

▾ Sunlitaws · github.com/aws/aws-sdk-go-v2/aws/protocol/eventstreamvia OSV
GO-2026-5410None
2mo ago

SecretsVerifier accepts empty signing secret without precondition in github.com/slack-go/slack

SecretsVerifier accepts empty signing secret without precondition in github.com/slack-go/slack

▾ Sunlitslack-go · github.com/slack-go/slackvia OSV
GHSA-59qp-cfj3-rp64Medium
2mo ago

netfoil has a domain name filter bypass via multiple questions

netfoil has a domain name filter bypass via multiple questions

▾ Sunlittinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
GHSA-3g4q-2f67-2gvhLow
2mo ago

netfoil has a resource leak in LRU cache

netfoil has a resource leak in LRU cache

▾ Sunlittinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
GHSA-7856-g3gv-9wq8Low
2mo ago

netfoil: Attacker controlled data written to logs

netfoil: Attacker controlled data written to logs

▾ Sunlittinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
CVE-2026-33655High· 7.7
2mo ago

New API: SSRF Protection Bypass via Unresolved Hostname in Notification URLs

New API: SSRF Protection Bypass via Unresolved Hostname in Notification URLs

▾ TwilightQuantumNous · github.com/QuantumNous/new-apiEPSS 0.44%via GHSA
CVE-2026-44342Medium· 5.3
2mo ago

New API is vulnerable to CSRF through user email binding

New API is vulnerable to CSRF through user email binding

▾ SunlitQuantumNous · github.com/QuantumNous/new-apiEPSS 0.19%via GHSA
GHSA-qrwj-vh9x-gw5vHigh· 8.3
2mo ago

Coder's workspace agent API insecure redirect handling allowed cross-agent file read and write

Coder's workspace agent API insecure redirect handling allowed cross-agent file read and write

▾ Twilightcoder · github.com/coder/coder/v2via GHSA
CVE-2026-55076High· 7.4
2mo ago

Coder's OIDC email_verified type coercion bypass enables account takeover via unverified email linking

Coder's OIDC email_verified type coercion bypass enables account takeover via unverified email linking

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.61%via GHSA
CVE-2026-55075High· 7.4
2mo ago

Coder vulnerable to OIDC account takeover via email-based user matching and email_verified bypass

Coder vulnerable to OIDC account takeover via email-based user matching and email_verified bypass

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.48%via GHSA
CVE-2026-55077High· 7.2
2mo ago

Coder: User-admin role can reset owner account password

Coder: User-admin role can reset owner account password

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.61%via GHSA
CVE-2026-55427High· 8.3
2mo ago

Coder vulnerable to SSH config injection via unsanitized server-supplied values in `coder config-ssh`

Coder vulnerable to SSH config injection via unsanitized server-supplied values in `coder config-ssh`

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.47%via GHSA
CVE-2026-55079Medium· 4.9
2mo ago

Coder's unbounded memory allocation in provisioner file upload allows authenticated denial of service

Coder's unbounded memory allocation in provisioner file upload allows authenticated denial of service

▾ Sunlitcoder · github.com/coder/coder/v2EPSS 0.61%via GHSA
CVE-2026-55429High· 8.7
2mo ago

Coder's workspace app upsert allows cross-workspace agent rebinding via user-controlled app ID

Coder's workspace app upsert allows cross-workspace agent rebinding via user-controlled app ID

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.51%via GHSA
CVE-2026-55428High· 8.2
2mo ago

Coder: Route hijacking through lack of validation of agent-supplied AllowedIPs in tailnet coordinator

Coder: Route hijacking through lack of validation of agent-supplied AllowedIPs in tailnet coordinator

▾ Twilightcoder · github.com/coder/coder/v2EPSS 0.40%via GHSA
CVE-2026-55430Medium· 5.8
2mo ago

Coder's subdomain workspace app routing trusts unauthenticated X-Forwarded-Host header, enabling cross-app data access

Coder's subdomain workspace app routing trusts unauthenticated X-Forwarded-Host header, enabling cross-app data access

▾ Sunlitcoder · github.com/coder/coder/v2EPSS 0.21%via GHSA
CVEs tagged “go” — page 22 · VulnSea