VulnSea

Tagged “go”

CVEs tagged go, newest first.

1735 CVEsRSS

CVE-2026-52844High· 7.5
3mo ago

Caddy: Windows `file_server` path authorization bypass via encoded backslash

Caddy: Windows `file_server` path authorization bypass via encoded backslash

▾ Twilightcaddyserver · github.com/caddyserver/caddy/v2EPSS 0.62%via GHSA
CVE-2026-52845High· 8.1
3mo ago

Caddy: FastCGI header normalization bypass in `forward_auth copy_headers`

Caddy: FastCGI header normalization bypass in `forward_auth copy_headers`

▾ Twilightcaddyserver · github.com/caddyserver/caddy/v2EPSS 0.45%via GHSA
CVE-2026-52846Medium· 4.2
3mo ago

Caddy: stripHTML template function bypass

Caddy: stripHTML template function bypass

▾ Sunlitcaddyserver · github.com/caddyserver/caddy/v2EPSS 0.25%via GHSA
CVE-2026-54322High· 7.7
3mo ago

Daytona: Cross-org IDOR in organization role update/delete — any org owner can rewrite or destroy another org's roles

Daytona: Cross-org IDOR in organization role update/delete — any org owner can rewrite or destroy another org's roles

▾ Twilightdaytonaio · github.com/daytonaio/daytonaEPSS 0.30%via GHSA
CVE-2026-28744High· 8.1
3mo ago

Gitea: Git Smart HTTP Skips Repository Token Scopes for Bearer Tokens

Gitea: Git Smart HTTP Skips Repository Token Scopes for Bearer Tokens

▾ Twilightgitea · code.gitea.io/giteaEPSS 0.45%via GHSA
CVE-2026-49980Critical· 9.8
3mo ago

Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix

Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix

▾ Midnightrclone · github.com/rclone/rcloneEPSS 0.78%via GHSA
CVE-2026-52797High· 8.5
3mo ago

Gogs: Overwriting critical files results in a denial of service

Gogs: Overwriting critical files results in a denial of service

▾ Twilightgogs · gogs.io/gogsEPSS 0.53%via GHSA
CVE-2026-28699High· 8.1PoC
3mo ago

Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication

Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication

▾ Midnightgitea · code.gitea.io/giteaEPSS 0.55%via GHSA
CVE-2026-26231High· 8.5
3mo ago

Gitea: Authorization Bypass via "Allow edits from maintainers" allows unauthorized commits to any readable repo

Gitea: Authorization Bypass via "Allow edits from maintainers" allows unauthorized commits to any readable repo

▾ Twilightgitea · code.gitea.io/giteaEPSS 0.35%via GHSA
CVE-2026-25714Medium· 4.3
3mo ago

Gitea: Incomplete CVE-2025-68941 fix: /user/orgs missing checkTokenPublicOnly + switch-case logic flaw

Gitea: Incomplete CVE-2025-68941 fix: /user/orgs missing checkTokenPublicOnly + switch-case logic flaw

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.34%via GHSA
CVE-2026-27783Medium· 4.3
3mo ago

Gitea: Missing repository-unit authorization on issue-template API endpoints

Gitea: Missing repository-unit authorization on issue-template API endpoints

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.34%via GHSA
CVE-2026-20706Medium
3mo ago

Gitea: Token scope bypass on web archive download endpoint

Gitea: Token scope bypass on web archive download endpoint

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.56%via GHSA
CVE-2026-50891High· 8.1
3mo ago

Filestash allows attackers to escalate privileges via sending a crafted request

Filestash allows attackers to escalate privileges via sending a crafted request

▾ Twilightmickael-kerjean · github.com/mickael-kerjean/filestashEPSS 0.35%via OSV
CVE-2026-50884High· 8.8
3mo ago

statping-ng allows attackers to escalate privileges to Administrator and access sensitive components

statping-ng allows attackers to escalate privileges to Administrator and access sensitive components

▾ Twilightstatping-ng · github.com/statping-ng/statping-ngEPSS 0.42%via OSV
CVE-2026-50879High· 7.5
3mo ago

linx-server has an issue in the uploadPostHandler component that allows attackers to cause a Denial of Service (DoS) via a crafted POST r…

linx-server has an issue in the uploadPostHandler component that allows attackers to cause a Denial of Service (DoS) via a crafted POST request

▾ Twilightandreimarcu · github.com/andreimarcu/linx-serverEPSS 0.46%via OSV
CVE-2026-11624Critical
3mo ago

MCP Toolbox for Databases has an Origin Validation Error

MCP Toolbox for Databases has an Origin Validation Error

▾ Midnightgoogleapis · github.com/googleapis/mcp-toolboxEPSS 0.22%via OSV
GHSA-v82c-5c2q-hx9gMedium
3mo ago

Duplicate Advisory: Privilege escalation from namespace admin to cluster admin via GrafanaDashboard jsonnetLib fileName

Duplicate Advisory: Privilege escalation from namespace admin to cluster admin via GrafanaDashboard jsonnetLib fileName

▾ Sunlitgrafana · github.com/grafana/grafana-operatorvia GHSA
CVE-2026-3433Medium· 4.3
3mo ago

Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel

Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.30%via OSV
CVE-2026-6739Medium· 6.7
3mo ago

Mattermost doesn't require system-level permission when patching protected default system roles

Mattermost doesn't require system-level permission when patching protected default system roles

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.46%via OSV
CVE-2026-6689Medium· 4.3
3mo ago

Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation

Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.25%via OSV
CVE-2026-7184Medium· 6.5
3mo ago

Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations

Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.44%via OSV
CVE-2026-6961High· 7.6
3mo ago

Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync

Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync

▾ Twilightmattermost · github.com/mattermost/mattermost-serverEPSS 0.45%via OSV
CVE-2026-7387High· 8.8
3mo ago

Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints

Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints

▾ Twilightmattermost · github.com/mattermost/mattermost-serverEPSS 0.42%via OSV
CVE-2026-6046Medium· 5.3
3mo ago

Mattermost doesn't validate that a username returned during bot registration belongs to a bot account

Mattermost doesn't validate that a username returned during bot registration belongs to a bot account

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.30%via OSV
CVE-2026-42306High· 7.2
3mo ago

github.com/docker/docker: github.com/moby/moby: Moby container framework: Host file overwrite via race condition in docker cp mount setup (…

A flaw was found in the Moby container framework. A race condition occurs during the `docker cp` mount setup, which a malicious container can exploit. This vulnerability allows the container to redirect a bind mount target to an arbitrary …

▾ TwilightRed Hat · Red Hat Edge Manager 1.1EPSS 0.10%via CSAF
CVE-2026-12681Medium· 6.8
3mo ago

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

▾ Sunlitgoogle · github.com/google/go-attestationEPSS 0.27%via OSV
GHSA-9r4w-jg96-92mvMedium· 6.8
3mo ago

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

▾ Sunlitgoogle · github.com/google/go-attestationvia GHSA
GHSA-6vgg-xhvh-38ffLow
3mo ago

nebula-mesh: POST /api/v1/hosts/{id}/mobile-bundle response lacks Cache-Control: no-store

nebula-mesh: POST /api/v1/hosts/{id}/mobile-bundle response lacks Cache-Control: no-store

▾ Sunlitjuev · github.com/juev/nebula-meshvia GHSA
CVE-2026-53999High· 7.7
3mo ago

Radius Controller May Delete a Container Resource via an Injected Deployment Annotation (Multi-Tenant Installs)

Radius Controller May Delete a Container Resource via an Injected Deployment Annotation (Multi-Tenant Installs)

▾ Twilightradius-project · github.com/radius-project/radiusvia GHSA
CVE-2026-54097High
3mo ago

File Browser: Cross-user unauthorized share-link deletion via unbounded prefix match in DeleteWithPathPrefix

File Browser: Cross-user unauthorized share-link deletion via unbounded prefix match in DeleteWithPathPrefix

▾ Twilightfilebrowser · github.com/filebrowser/filebrowserEPSS 0.45%via GHSA
CVEs tagged “go” — page 29 · VulnSea