VulnSea

Tagged “go”

CVEs tagged go, newest first.

1735 CVEsRSS

CVE-2026-45692Medium· 5.4
4mo ago

Caddy: Remote Admin Authorization Bypass in `/config` API via Array Index Normalization

Caddy: Remote Admin Authorization Bypass in `/config` API via Array Index Normalization

▾ Sunlitcaddyserver · github.com/caddyserver/caddy/v2EPSS 0.24%via OSV
GHSA-mx64-mj3q-7prjHigh· 7.5
4mo ago

iskorotkov/avro: Denial-of-Service Vulnerability in Decoder

iskorotkov/avro: Denial-of-Service Vulnerability in Decoder

▾ Twilightiskorotkov · github.com/iskorotkov/avro/v2via OSV
CVE-2026-18676Medium
4mo ago

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

▾ Sunlitkumahq · github.com/kumahq/kumaEPSS 0.30%via OSV
CVE-2026-44283Medium· 4.3⚖ disputed
4mo ago

etcd: etcd: Authenticated user can bypass RBAC for unauthorized data access (CVE-2026-44283)

A flaw was found in etcd, a distributed key-value store. An authenticated user, without sufficient read or lease-related permissions, could bypass Role-Based Access Control (RBAC) authorization checks. This bypass occurs during transaction…

▾ SunlitRed Hat · Red Hat OpenStack Platform 16.2EPSS 0.27%via CSAF
CVE-2026-45021Medium
4mo ago

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

▾ Sunlitkumahq · github.com/kumahq/kumaEPSS 0.30%via OSV
CVE-2026-8634Critical· 9.1
4mo ago

Crabbox: environment variable exposure vulnerability

Crabbox: environment variable exposure vulnerability

▾ Midnightopenclaw · github.com/openclaw/crabboxEPSS 1.0%via OSV
CVE-2026-44885Medium· 5.5
4mo ago

Portainer has a path traversal in backup archive extraction that allows arbitrary file write

Portainer has a path traversal in backup archive extraction that allows arbitrary file write

▾ Sunlitportainer · github.com/portainer/portainerEPSS 0.80%via OSV
GHSA-gxhx-2686-5h9gMedium
4mo ago

slack-go `SecretsVerifier` accepts empty signing secret without precondition

slack-go `SecretsVerifier` accepts empty signing secret without precondition

▾ Sunlitslack-go · github.com/slack-go/slackvia OSV
CVE-2026-44697High· 8.6
4mo ago

Klever-Go MultiDataInterceptor has remote OOM via crafted compressed P2P payload

Klever-Go MultiDataInterceptor has remote OOM via crafted compressed P2P payload

▾ Twilightklever-io · github.com/klever-io/klever-goEPSS 0.46%via OSV
CVE-2026-45152High· 7.8
4mo ago

uniget is Vulnerable to Command Injection in tool.Check Leading to Arbitrary Code Execution

uniget is Vulnerable to Command Injection in tool.Check Leading to Arbitrary Code Execution

▾ Twilightuniget-org · gitlab.com/uniget-org/cliEPSS 0.87%via OSV
CVE-2026-44477Critical· 9.9
4mo ago

CloudNativePG's metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE

CloudNativePG's metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE

▾ Midnightcloudnative-pg · github.com/cloudnative-pg/cloudnative-pgEPSS 0.52%via OSV
CVE-2026-8276Low· 3.7
4mo ago

bettercap Has an Integer Coercion Error in modules/mysql_server/mysql_server.go

bettercap Has an Integer Coercion Error in modules/mysql_server/mysql_server.go

▾ Sunlitbettercap · github.com/bettercap/bettercap/v2EPSS 0.62%via OSV
CVE-2026-45022High
4mo ago

go-git's improper parsing of specially crafted objects may lead to inconsistent interpretation compared to upstream Git

go-git's improper parsing of specially crafted objects may lead to inconsistent interpretation compared to upstream Git

▾ Twilightgo-git · github.com/go-git/go-git/v6EPSS 0.16%via OSV
CVE-2026-42595High· 8.6
4mo ago

Gotenberg: Server-Side Request Forgery via Chromium URL Endpoint with Redirect-Based Deny-List Bypass

Gotenberg: Server-Side Request Forgery via Chromium URL Endpoint with Redirect-Based Deny-List Bypass

▾ Twilightgotenberg · github.com/gotenberg/gotenberg/v8EPSS 0.42%via OSV
CVE-2026-6815Medium· 5.9PoC
4mo ago

Casdoor: Arbitrary file write possible through Local File System storage provider

Casdoor: Arbitrary file write possible through Local File System storage provider

▾ Twilightcasdoor · github.com/casdoor/casdoorEPSS 0.59%via OSV
CVE-2026-44309Medium· 5.3
4mo ago

gitsign verify accepts signatures over go-git-normalized bytes, enabling trust confusion on malformed commits

gitsign verify accepts signatures over go-git-normalized bytes, enabling trust confusion on malformed commits

▾ Sunlitsigstore · github.com/sigstore/gitsignEPSS 0.16%via OSV
CVE-2026-44310Medium· 5.4
4mo ago

gitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers

gitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers

▾ Sunlitsigstore · github.com/sigstore/gitsignEPSS 0.17%via OSV
CVE-2026-44327Critical· 10.0
4mo ago

free5GC's NEF nnef-oam route group is unauthenticated; no-token requests reach the OAM handler

free5GC's NEF nnef-oam route group is unauthenticated; no-token requests reach the OAM handler

▾ Midnightfree5gc · github.com/free5gc/nefEPSS 0.53%via OSV
CVE-2026-25705High· 8.4
4mo ago

Rancher Extensions have arbitrary file access via path traversal

Rancher Extensions have arbitrary file access via path traversal

▾ Twilightrancher · github.com/rancher/rancherEPSS 0.49%via OSV
CVE-2026-79660Medium· 5.3
4mo ago

Ech0 comment model's Email field returned on public /api/comments endpoints

Ech0 comment model's Email field returned on public /api/comments endpoints

▾ Sunlitlin-snow · github.com/lin-snow/Ech0EPSS 0.41%via OSV
CVE-2026-79668Medium· 5.3
4mo ago

Ech0's Unauthenticated Like Endpoint Enables Arbitrary Engagement Metric Inflation

Ech0's Unauthenticated Like Endpoint Enables Arbitrary Engagement Metric Inflation

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.43%via OSV
CVE-2026-79661Medium· 6.5
4mo ago

Ech0 allows PUT /api/echo/like/:id unauthenticated: anonymous callers to modify any echo's fav_count

Ech0 allows PUT /api/echo/like/:id unauthenticated: anonymous callers to modify any echo's fav_count

▾ Sunlitlin-snow · github.com/lin-snow/Ech0EPSS 0.43%via OSV
CVE-2026-79662High· 8.0
4mo ago

Ech0's OAuth redirect URI validation ignores path component, enables exchange-code theft

Ech0's OAuth redirect URI validation ignores path component, enables exchange-code theft

▾ Twilightlin-snow · github.com/lin-snow/Ech0EPSS 0.32%via OSV
CVE-2026-79663Medium· 4.8
4mo ago

Ech0's RSS feed renders unescaped tag names and raw-HTML markdown, stored XSS against subscribers

Ech0's RSS feed renders unescaped tag names and raw-HTML markdown, stored XSS against subscribers

▾ Sunlitlin-snow · github.com/lin-snow/Ech0EPSS 0.25%via OSV
CVE-2026-42501Medium· 5.3
4mo ago

cmd/go: golang: Go command (cmd/go): Integrity bypass due to checksum validation flaw via malicious module proxy (CVE-2026-42501)

A flaw was found in the Go command (`cmd/go`). A malicious module proxy can exploit this vulnerability by bypassing the validation of module checksums. This allows the proxy to serve altered versions of the Go toolchain, which the `go` com…

▾ SunlitRed Hat · Red Hat Enterprise Linux AppStream (v. 8)EPSS 0.29%via CSAF
CVE-2026-39823Medium· 5.4
4mo ago

html/template: golang: Go html/template: Cross-Site Scripting via improper URL escaping in meta tag content (CVE-2026-39823)

A flaw was found in the `html/template` package of Go. A remote attacker could exploit this vulnerability by inserting ASCII whitespaces around the equals sign (`=`) within a URL's content attribute inside a `<meta>` tag. This improper esc…

▾ SunlitRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.33%via CSAF
CVE-2026-39826Medium· 5.4
4mo ago

html/template: golang: html/template: Cross-site scripting due to incorrect script tag escaping (CVE-2026-39826)

A flaw was found in html/template. A trusted template author could craft a script tag with an empty or whitespace-only 'type' attribute. This vulnerability causes the template engine to incorrectly escape data passed into the script block,…

▾ SunlitRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.39%via CSAF
CVE-2026-39817Medium· 5.9
4mo ago

Invoking "go tool pack" does not sanitize output paths in cmd/go

Invoking "go tool pack" does not sanitize output paths in cmd/go

▾ Sunlittoolchain · toolchainEPSS 0.16%via OSV
CVE-2026-39819Medium· 4.4
4mo ago

Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go

Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go

▾ Sunlittoolchain · toolchainEPSS 0.15%via OSV
CVE-2026-39825Medium· 6.5
4mo ago

net/http/httputil: golang: net/http/httputil: ReverseProxy forwards hidden query parameters, potentially bypassing security controls (CVE-2…

A flaw was found in the `net/http/httputil` package, specifically within the `ReverseProxy` component. This vulnerability allows the `ReverseProxy` to forward query parameters that are not visible to `Rewrite` functions. This occurs becaus…

▾ SunlitRed Hat · Red Hat OpenShift Container Platform 4.22EPSS 0.41%via CSAF
CVEs tagged “go” — page 33 · VulnSea