VulnSea

Tagged “go”

CVEs tagged go, newest first.

1732 CVEsRSS

CVE-2026-52802Medium· 5.4
3mo ago

Gogs has an Open Redirect via redirect_to

Gogs has an Open Redirect via redirect_to

▾ Sunlitgogs · gogs.io/gogsEPSS 0.55%via GHSA
CVE-2026-52804Medium
3mo ago

Gogs Vulnerable to Privilege Escalation via Collaboration Access Mode Validation

Gogs Vulnerable to Privilege Escalation via Collaboration Access Mode Validation

▾ Sunlitgogs · gogs.io/gogsEPSS 0.50%via GHSA
CVE-2026-52805High· 8.7
3mo ago

Gogs has a Migration Redirect Bypass that Leads to Internal Repository Theft

Gogs has a Migration Redirect Bypass that Leads to Internal Repository Theft

▾ Twilightgogs · gogs.io/gogsEPSS 0.38%via GHSA
CVE-2026-52806Critical· 9.9PoC
3mo ago

Gogs vulnerable to RCE via git rebase --exec argument injection in pull request merge

Gogs vulnerable to RCE via git rebase --exec argument injection in pull request merge

▾ Abyssalgogs · gogs.io/gogsEPSS 7.9%via GHSA
CVE-2026-52807High
3mo ago

Gogs has DOM-based XSS via Milestone Name on New Issue Page

Gogs has DOM-based XSS via Milestone Name on New Issue Page

▾ Twilightgogs · gogs.io/gogsEPSS 0.48%via GHSA
CVE-2026-52808High· 7.1
3mo ago

Gogs's write-level collaborators can mutate admin-only repository settings via API

Gogs's write-level collaborators can mutate admin-only repository settings via API

▾ Twilightgogs · gogs.io/gogsEPSS 0.48%via GHSA
CVE-2026-52809Medium· 6.8
3mo ago

Gogs's password-reset tokens use account-activation lifetime, ignoring RESET_PASSWORD_CODE_LIVES

Gogs's password-reset tokens use account-activation lifetime, ignoring RESET_PASSWORD_CODE_LIVES

▾ Sunlitgogs · gogs.io/gogsEPSS 0.20%via GHSA
CVE-2026-52810HighPoC
3mo ago

Gogs allows users to write to readonly repositories using receive-pack + service=git-upload-pack confusion

Gogs allows users to write to readonly repositories using receive-pack + service=git-upload-pack confusion

▾ Midnightgogs · gogs.io/gogsEPSS 0.43%via GHSA
CVE-2026-52811Critical
3mo ago

Gogs: UploadRepoFiles writes outside repo working tree via committed parent sym

Gogs: UploadRepoFiles writes outside repo working tree via committed parent sym

▾ Midnightgogs · gogs.io/gogsEPSS 0.47%via GHSA
CVE-2026-52812High
3mo ago

Gogs: LFS dedupe path leaks private repo content across tenants

Gogs: LFS dedupe path leaks private repo content across tenants

▾ Twilightgogs · gogs.io/gogsEPSS 0.24%via GHSA
CVE-2026-52813Critical· 10.0PoC
3mo ago

Gogs has Path Traversal in organization name that results in RCE through Git hooks

Gogs has Path Traversal in organization name that results in RCE through Git hooks

▾ Abyssalgogs · gogs.io/gogsEPSS 1.1%via GHSA
CVE-2026-52814Medium
3mo ago

Gogs has Unauthenticated Asymmetric Denial of Service (DoS) via SSH Handshake Stall (File Descriptor Exhaustion)

Gogs has Unauthenticated Asymmetric Denial of Service (DoS) via SSH Handshake Stall (File Descriptor Exhaustion)

▾ Sunlitgogs · gogs.io/gogsEPSS 0.55%via GHSA
CVE-2026-52815MediumPoC
3mo ago

Gogs Vulnerable to Unauthenticated Organization Teams Information Disclosure via API

Gogs Vulnerable to Unauthenticated Organization Teams Information Disclosure via API

▾ Twilightgogs · gogs.io/gogsEPSS 1.5%via GHSA
CVE-2026-52816Medium
3mo ago

Gogs's Unauthenticated Jupyter Notebook (ipynb) Sanitizer allows arbitrary data: URIs leading to XSS

Gogs's Unauthenticated Jupyter Notebook (ipynb) Sanitizer allows arbitrary data: URIs leading to XSS

▾ Sunlitgogs · gogs.io/gogsEPSS 0.68%via GHSA
CVE-2026-48126High· 8.2
3mo ago

Algernon: Host header path traversal in --domain mode reads files and runs Lua from parent dir

Algernon: Host header path traversal in --domain mode reads files and runs Lua from parent dir

▾ Twilightxyproto · github.com/xyproto/algernonEPSS 0.50%via GHSA
GHSA-wcmj-x466-56mmMedium· 6.1
3mo ago

OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree

OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree

▾ Sunlitopentofu · github.com/opentofu/opentofuvia GHSA
CVE-2026-8823Low· 3.8
3mo ago

Mattermost has an Incorrect Authorization issue

Mattermost has an Incorrect Authorization issue

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.32%via OSV
CVE-2026-12249Critical· 9.0
3mo ago

Canonical ADSys Uses a Less Trusted Source

Canonical ADSys Uses a Less Trusted Source

▾ Midnightubuntu · github.com/ubuntu/adsysEPSS 0.14%via OSV
CVE-2026-6673Medium· 6.4
3mo ago

Mattermost doesn't authenticate Atlassian Connect installed callbacks, allowing a remote unauthenticated attacker to inject a rogue share…

Mattermost doesn't authenticate Atlassian Connect installed callbacks, allowing a remote unauthenticated attacker to inject a rogue sharedSecret

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.30%via OSV
CVE-2026-6062Medium· 6.4
3mo ago

Mattermost doesn't validate channel ownership of an existing subscription before applying edits

Mattermost doesn't validate channel ownership of an existing subscription before applying edits

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.24%via OSV
CVE-2026-9162Medium· 4.3
3mo ago

Mattermost doesn't invalidate cached authentication state for active WebSocket connections during global session revocation

Mattermost doesn't invalidate cached authentication state for active WebSocket connections during global session revocation

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.33%via OSV
CVE-2026-8074Low· 3.8
3mo ago

Mattermost doesn't enforce bot-specific permission checks on the user active status endpoint

Mattermost doesn't enforce bot-specific permission checks on the user active status endpoint

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.32%via OSV
CVE-2026-5139Medium· 5.4
3mo ago

Mattermost doesn't enforce administrator authorization on the {{setDefaultInstance}} call within the {{/gitlab connect}} command handler

Mattermost doesn't enforce administrator authorization on the {{setDefaultInstance}} call within the {{/gitlab connect}} command handler

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.29%via OSV
CVE-2026-39904Medium· 6.5
3mo ago

Gophish contains a denial of service vulnerability

Gophish contains a denial of service vulnerability

▾ Sunlitgophish · github.com/gophish/gophishEPSS 0.44%via OSV
CVE-2026-42127High· 7.5
3mo ago

The public dashboard query endpoint does not limit request body size before processing, allowing unauthenticated attackers to trigger excessive memory allocation by sending arbitrarily large JSON payloads

The public dashboard query endpoint does not limit request body size before processing, allowing unauthenticated attackers to trigger excessive memory allocation by sending arbitrarily large JSON payloads. This can lead to denial of serv…

▾ Twilightgrafana · grafanaEPSS 0.43%via NVD
CVE-2026-9029High· 7.3
3mo ago

A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel's XYZ tile layer via a template variable

A user with Editor permissions can place a malicious script in the attribution field of a Geomap panel's XYZ tile layer via a template variable. The script then executes in the browser of any user who views the affected dashboard (stored…

▾ Twilightgrafana · grafanaEPSS 0.32%via NVD
CVE-2026-42129High· 7.7
3mo ago

A user with Viewer permissions can use a path traversal in the Loki data source plugin to reach administrative Loki endpoints and read sensitive backend configuration and internal service information.

A user with Viewer permissions can use a path traversal in the Loki data source plugin to reach administrative Loki endpoints and read sensitive backend configuration and internal service information.

▾ Twilightgrafana · loki_datasourceEPSS 0.44%via NVD
CVE-2026-10601Medium· 5.4
3mo ago

A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints

A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source plugins to reach unintended backend endpoints. Depending on the backend configuration this can expose data source credentials, leak inter…

▾ Sunlitgrafana · grafanaEPSS 0.29%via NVD
CVE-2025-64719Medium· 4.9
3mo ago

Gogs has a Denial of Service in repository/wiki file listing web pages

Gogs has a Denial of Service in repository/wiki file listing web pages

▾ Sunlitgogs · gogs.io/gogsEPSS 0.44%via GHSA
CVE-2026-25119High
3mo ago

Gogs has an Authentication Bypass via Unvalidated Reverse Proxy Headers

Gogs has an Authentication Bypass via Unvalidated Reverse Proxy Headers

▾ Twilightgogs · gogs.io/gogsEPSS 0.86%via GHSA
CVEs tagged “go” — page 26 · VulnSea