VulnSea

Tagged “go”

CVEs tagged go, newest first.

1735 CVEsRSS

CVE-2026-5807High· 7.5
5mo ago

HashiCorp Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations

HashiCorp Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations

▾ Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.91%via OSV
CVE-2026-4525High· 7.5
5mo ago

HashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization

HashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization

▾ Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.59%via OSV
CVE-2026-40293High· 7.5
5mo ago

OpenFGA: github.com/openfga/openfga: OpenFGA: Information disclosure of preshared API key via playground endpoint (CVE-2026-40293)

A flaw was found in OpenFGA, an authorization/permission engine. When OpenFGA is configured to use preshared-key authentication and the built-in playground is enabled and accessible beyond localhost or trusted networks, a remote attacker c…

▾ TwilightRed Hat · Multicluster Global Hub 1.7.3EPSS 0.50%via CSAF
CVE-2026-5160Medium· 6.1
5mo ago

goldmark vulnerable to Cross-site Scripting (XSS)

goldmark vulnerable to Cross-site Scripting (XSS)

▾ Sunlityuin · github.com/yuin/goldmark/renderer/htmlEPSS 0.34%via OSV
CVE-2026-40173Critical· 9.4
5mo ago

Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints

Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints

▾ Midnightdgraph-io · github.com/dgraph-io/dgraph/v25EPSS 0.60%via OSV
CVE-2026-40611High· 8.8
5mo ago

ACME Lego: Arbitrary File Write via Path Traversal in Webroot HTTP-01 Provider

ACME Lego: Arbitrary File Write via Path Traversal in Webroot HTTP-01 Provider

▾ Twilightgo-acme · github.com/go-acme/lego/v4EPSS 0.55%via OSV
CVE-2026-41068High· 7.7
5mo ago

Kyverno: Cross-Namespace Read Bypasses RBAC Isolation (CVE-2026-22039 Incomplete Fix)

Kyverno: Cross-Namespace Read Bypasses RBAC Isolation (CVE-2026-22039 Incomplete Fix)

▾ Twilightkyverno · github.com/kyverno/kyvernoEPSS 0.37%via OSV
CVE-2024-53412High· 8.4
5mo ago

NietThijmen ShoppingCart: Command injection in the connect function

NietThijmen ShoppingCart: Command injection in the connect function

▾ TwilightNietThijmen · github.com/NietThijmen/ShoppingCartEPSS 0.56%via OSV
CVE-2026-40574Medium· 6.8
5mo ago

OAuth2 Proxy has an Authorization Bypass in Email Domain Validation via Malformed Multi-@ Email Claims

OAuth2 Proxy has an Authorization Bypass in Email Domain Validation via Malformed Multi-@ Email Claims

▾ Sunlitoauth2-proxy · github.com/oauth2-proxy/oauth2-proxy/v7EPSS 0.34%via OSV
CVE-2026-40575Critical· 9.1
5mo ago

OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing

OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing

▾ Midnightoauth2-proxy · github.com/oauth2-proxy/oauth2-proxy/v7EPSS 0.73%via OSV
CVE-2026-21726Medium· 5.3
5mo ago

Grafana Loki Path Traversal - CVE-2021-36156 Bypass

Grafana Loki Path Traversal - CVE-2021-36156 Bypass

▾ Sunlitgrafana · github.com/grafana/loki/v3EPSS 0.41%via OSV
CVE-2026-40090High· 7.1
5mo ago

Zarf has a Path Traversal via Malicious Package Metadata.Name — Arbitrary File Write

Zarf has a Path Traversal via Malicious Package Metadata.Name — Arbitrary File Write

▾ Twilightzarf-dev · github.com/zarf-dev/zarfEPSS 0.39%via OSV
CVE-2026-40246High· 7.5
5mo ago

free5gc UDR improper path validation allows unauthenticated deletion of Traffic Influence Subscriptions

free5gc UDR improper path validation allows unauthenticated deletion of Traffic Influence Subscriptions

▾ Twilightfree5gc · github.com/free5gc/udrEPSS 0.45%via OSV
CVE-2026-40922Medium· 5.4
5mo ago

SiYuan has incomplete fix for CVE-2026-33066: XSS

SiYuan has incomplete fix for CVE-2026-33066: XSS

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.38%via OSV
CVE-2026-34476High· 7.1
5mo ago

Apache SkyWalking MCP: Server-Side Request Forgery via SW-URL Header in MCP Server

Apache SkyWalking MCP: Server-Side Request Forgery via SW-URL Header in MCP Server

▾ Twilightapache · github.com/apache/skywalking-mcpEPSS 0.54%via OSV
CVE-2026-79671Medium· 5.5
5mo ago

Ech0 has SSRF via DNS Resolution Bypass in Webhook URL Validation

Ech0 has SSRF via DNS Resolution Bypass in Webhook URL Validation

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.31%via OSV
CVE-2026-79673Medium· 6.5
5mo ago

Ech0 Scope Bypass: profile:read Access Token Can Change Admin Password and Escalate to Unrestricted Session

Ech0 Scope Bypass: profile:read Access Token Can Change Admin Password and Escalate to Unrestricted Session

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.43%via OSV
CVE-2026-79672Medium· 5.5
5mo ago

Ech0 Comment Panel Endpoints Missing RequireScopes Middleware — Scoped Access Token Bypass

Ech0 Comment Panel Endpoints Missing RequireScopes Middleware — Scoped Access Token Bypass

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.32%via OSV
CVE-2026-79666Medium· 6.5
5mo ago

Ech0: Missing authorization on dashboard log endpoints allows low-privilege users to access sensitive system logs

Ech0: Missing authorization on dashboard log endpoints allows low-privilege users to access sensitive system logs

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.39%via OSV
CVE-2026-79670Medium· 4.8
5mo ago

Ech0 has Stored XSS via SVG Upload and Content-Type Validation Bypass in File Upload

Ech0 has Stored XSS via SVG Upload and Content-Type Validation Bypass in File Upload

▾ Sunlitlin-snow · github.com/lin-snow/ech0EPSS 0.25%via OSV
CVE-2026-79667High· 7.6
5mo ago

Ech0: Scoped admin access tokens can bypass least-privilege controls on privileged endpoints, including backup export

Ech0: Scoped admin access tokens can bypass least-privilege controls on privileged endpoints, including backup export

▾ Twilightlin-snow · github.com/lin-snow/ech0EPSS 0.32%via OSV
CVE-2026-34178Critical· 9.1
5mo ago

LXD: Importing a crafted backup leads to project restriction bypass

LXD: Importing a crafted backup leads to project restriction bypass

▾ Midnightcanonical · github.com/canonical/lxdEPSS 0.68%via OSV
CVE-2026-34177Critical· 9.1
5mo ago

LXD: VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf

LXD: VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf

▾ Midnightcanonical · github.com/canonical/lxdEPSS 0.61%via OSV
CVE-2026-34179Critical· 9.1
5mo ago

LXD: Update of type field in restricted TLS certificate allows privilege escalation to cluster admin

LXD: Update of type field in restricted TLS certificate allows privilege escalation to cluster admin

▾ Midnightcanonical · github.com/canonical/lxdEPSS 0.42%via OSV
CVE-2026-35204High· 8.6PoC
5mo ago

Helm has a path traversal in plugin metadata version enables arbitrary file write outside Helm plugin directory

Helm has a path traversal in plugin metadata version enables arbitrary file write outside Helm plugin directory

▾ Midnighthelm · helm.sh/helm/v4EPSS 0.19%via OSV
CVE-2026-35205High· 7.8
5mo ago

Helm's plugin verification fails open when .prov is missing, allowing unsigned plugin install

Helm's plugin verification fails open when .prov is missing, allowing unsigned plugin install

▾ Twilighthelm · helm.sh/helm/v4EPSS 0.28%via OSV
CVE-2026-35206Medium
5mo ago

Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment

Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment

▾ Sunlithelm · helm.sh/helm/v4EPSS 0.19%via OSV
CVE-2026-35596Medium· 4.3
5mo ago

Vikunja has Broken Access Control on Label Read via SQL Operator Precedence Bug

Vikunja has Broken Access Control on Label Read via SQL Operator Precedence Bug

▾ Sunlitapi · code.vikunja.io/apiEPSS 0.35%via OSV
CVE-2026-35597Medium· 5.9
5mo ago

Vikunja Vulnerable to TOTP Brute-Force Due to Non-Functional Account Lockout

Vikunja Vulnerable to TOTP Brute-Force Due to Non-Functional Account Lockout

▾ Sunlitapi · code.vikunja.io/apiEPSS 0.47%via OSV
CVE-2026-40242High· 7.2PoC
5mo ago

Arcane has Unauthenticated SSRF with Conditional Response Reflection in Template Fetch Endpoint

Arcane has Unauthenticated SSRF with Conditional Response Reflection in Template Fetch Endpoint

▾ Midnightgetarcaneapp · github.com/getarcaneapp/arcane/backendEPSS 0.72%via OSV
CVEs tagged “go” — page 36 · VulnSea