VulnSea

Tagged “go”

CVEs tagged go, newest first.

1732 CVEsRSS

CVE-2026-61554High· 7.5PoC
1w ago

emp3r0r is a C2 designed by Linux users for Linux environments

emp3r0r is a C2 designed by Linux users for Linux environments. Prior to version 4.2.5, the `http_poll` C2 transport accepts attacker-controlled HTTP polling sessions before CBOR `MsgAuth` authentication is completed. A remote unauthenti…

▾ Midnightjm33-m0 · github.com/jm33-m0/emp3r0r/coreEPSS 0.71%via NVD
GHSA-rf68-8gjr-36q7Low
1w ago

Nezha: OAuth2 redirect_uri Host header injection regression when dashboard_host is empty

Nezha: OAuth2 redirect_uri Host header injection regression when dashboard_host is empty

▾ Sunlitnezhahq · github.com/nezhahq/nezhavia OSV
CVE-2026-32599Medium· 5.3
1w ago

Netmaker makes networks with WireGuard

Netmaker makes networks with WireGuard. Prior to version 1.5.0, the `sqliteDeleteRecord` function in Netmaker's database layer constructs SQL `DELETE` statements using direct string concatenation of user-supplied input. This allows an au…

▾ Sunlitgravitl · netmakerEPSS 0.36%via NVD
CVE-2026-63443High· 8.3
1w ago

Coder allows organizations to provision remote development environments via Terraform

Coder allows organizations to provision remote development environments via Terraform. Prior to 2.29.19, 2.32.9, 2.33.10, and 2.34.4, agentConn.apiClient() follows redirects while its custom transport accepts the host from the redirected…

▾ Twilightcoder · coderEPSS 0.76%via NVD
CVE-2026-59157Medium· 6.5
1w ago

webhookd is a minimalist webhook server that triggers shell scripts and external processes through HTTP requests

webhookd is a minimalist webhook server that triggers shell scripts and external processes through HTTP requests. Prior to 1.22.0, webhookd deployments without htpasswd authentication forwarded all incoming HTTP headers through HTTPParam…

▾ Sunlitncarlier · webhookdEPSS 0.60%via NVD
CVE-2026-54167High· 8.2
1w ago

Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories

Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories. Prior to 0.37.8, 0.39.6, 0.42.1, and 0.48.0, the GitHub App provider accepts X-GitHub-Enterprise-Host as the API host while processi…

▾ Twilighttektoncd · pipelines-as-codeEPSS 0.27%via NVD
CVE-2026-54168Medium· 6.5
1w ago

Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories

Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories. Prior to 0.37.8, 0.39.6, 0.42.1, and 0.48.0, a GitHub App installation token created during webhook processing is not scoped to the …

▾ Sunlittektoncd · pipelines-as-codeEPSS 0.59%via NVD
CVE-2026-55149High· 7.5PoC
1w ago

Vouch Proxy is an SSO and OAuth/OIDC login solution for Nginx using the auth_request module

Vouch Proxy is an SSO and OAuth/OIDC login solution for Nginx using the auth_request module. Prior to 0.48.0, Cookie in pkg/cookie/cookie.go parses the total part count from an attacker-controlled multipart cookie name and passes the val…

▾ Midnightvouch · vouch-proxyEPSS 0.72%via NVD
CVE-2026-53941Medium· 6.9
1w ago

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. From 0.27.0 until 0.53.1, the uprobe library resolver can allow an unprivileged container to co…

▾ Sunlitinspektor-gadget · inspektor-gadgetEPSS 0.52%via NVD
CVE-2026-53658Medium· 6.3
1w ago

Fabric CA is a Certificate Authority for Hyperledger Fabric

Fabric CA is a Certificate Authority for Hyperledger Fabric. Prior to 1.5.21, when fabric-ca is configured with an LDAP backend, Client.GetUser in lib/server/ldap/client.go inserts the username from HTTP Basic authentication into the LDA…

▾ Sunlithyperledger · fabric-caEPSS 0.45%via NVD
CVE-2026-49446Medium· 6.1PoC
1w ago

Cosmos provides users the ability self-host a home server by acting as a secure gateway to your application, as well as a server manager

Cosmos provides users the ability self-host a home server by acting as a secure gateway to your application, as well as a server manager. Prior to 0.22.19, tokenMiddleware in src/proxy/routerGen.go can return through the Constellation tu…

▾ Twilightazukaar · Cosmos-ServerEPSS 0.30%via NVD
CVE-2026-52724Medium· 5.8
1w ago

Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs

Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs. Prior to 2.7.26, 2.9.16, 2.11.14, 2.12.11, and 2.13.7, Universal mode kuma-dp connections to an HTTPS control plane disable TLS peer ve…

▾ Sunlitkumahq · kumaEPSS 0.35%via NVD
CVE-2026-50166Medium· 5.5
1w ago

Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs

Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs. Prior to 2.7.26, 2.9.16, 2.11.14, 2.12.11, and 2.13.7, a kumactl profile manually configured for an HTTPS control plane without --ca-ce…

▾ Sunlitkumahq · kumaEPSS 0.27%via NVD
CVE-2026-58196Medium· 4.7PoC
1w ago

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers. Prior to 0.31.0, remote.Handler.Authenticate in pkg/auth/remote/handler.go invokes discovery.DetectAuthenticationFromServer…

▾ Twilightstacklok · toolhiveEPSS 0.43%via NVD
CVE-2026-54450Low· 2.9
1w ago

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol (MCP) servers. Prior to 0.29.1, networking.IsPrivateIP in pkg/networking/utilities.go omits the IPv6 NAT64 prefixes 64:ff9b::/96 and 64:ff…

▾ Sunlitstacklok · toolhiveEPSS 0.33%via NVD
CVE-2026-61549Critical· 9.0
1w ago

Woodpecker is a CI/CD engine

Woodpecker is a CI/CD engine. From 1.0.0 until 3.16.0, pipeline/backend/kubernetes/backend_options.go defines backend_options.kubernetes.serviceAccountName, and the Kubernetes backend in pipeline/backend/kubernetes/pod.go copies that pip…

▾ Midnightwoodpecker-ci · woodpeckerEPSS 0.28%via NVD
CVE-2026-44300High· 8.8
1w ago

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs. Prior to 1.121.0, the POST /serviceKey endpoint in pkg/costmodel/router.go allows a network client to invoke AddServiceKey without mandatory authentication and s…

▾ Twilightopencost · opencostEPSS 0.75%via NVD
CVE-2026-47780Medium· 6.9PoC
1w ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. In 4.2.3 and earlier, HandleCreateEeSubscriptions and HandleQueryeesubscriptions in free5gc/udr internal/sbi/api_datarepository.go validate the ueId path value with a regul…

▾ Twilightfree5gc · free5gcEPSS 0.54%via NVD
CVE-2026-54637Medium· 5.5PoC
1w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4-rc.3, the scheduler's default unauthenticated v1 gRPC flow accepts attacker-controlled PeerHost.Ip and PeerHost.DownPort values through…

▾ Twilightdragonflyoss · dragonflyEPSS 0.80%via NVD
CVE-2026-49254Low· 2.9
1w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4, manager/router/router.go registers GET /api/v1/oauth and GET /api/v1/oauth/:id without jwt.MiddlewareFunc() or RBAC(), while manager/h…

▾ Sunlitdragonflyoss · dragonflyEPSS 0.48%via NVD
CVE-2026-55636Medium· 5.7
1w ago

Capsule is a multi-tenancy and policy-based framework for Kubernetes

Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.6, charts/capsule/templates/configuration.yaml configures the validating webhook with namespace/finalize instead of the Kubernetes resource name…

▾ Sunlitprojectcapsule · capsuleEPSS 0.39%via NVD
CVE-2026-55887High· 8.7
1w ago

MCP Gateway allows easy and secure running and deployment of MCP servers

MCP Gateway allows easy and secure running and deployment of MCP servers. From 0.21.0 until 0.42.2, Docker MCP Gateway YAML-unmarshalled the attacker-controlled io.docker.server.metadata OCI image label into the broad catalog.Server stru…

▾ Twilightdocker · mcp-gatewayEPSS 0.22%via NVD
CVE-2026-44778Low· 2.9⚖ disputed
1w ago

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. From 0.28.0 until 0.53.1, the USDT note parser in pkg/uprobetracer/usdt.go can allow an unprivi…

▾ Sunlitinspektor-gadget · inspektor-gadgetEPSS 0.63%via NVD
CVE-2026-48785Medium· 4.8
1w ago

Apptainer is an open source container platform

Apptainer is an open source container platform. Prior to version 1.5.1, Image.AuthorizedPath applies plain string-prefix matching to the limit container paths directive in apptainer.conf, so an allowed path such as /data/safe also author…

▾ Sunlitapptainer · apptainerEPSS 0.15%via NVD
CVE-2026-55828Medium· 6.0
1w ago

qbee transport is a remote access transport protocol implementation

qbee transport is a remote access transport protocol implementation. Prior to 1.26.25, the extractTar routine uses strictly lexical path validation that does not account for on-disk symlinks created earlier in the extraction process. A c…

▾ Sunlitqbee-io · transportEPSS 0.38%via NVD
CVE-2026-55770Medium· 6.8PoC
1w ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao used EscapeLDAPValue, an RFC 4514 distinguished-name escaping function, where RFC 4515 LDAP search-filter escaping was required in sdk/helper/lda…

▾ Twilightopenbao · openbaoEPSS 0.53%via NVD
CVE-2026-55774Low· 2.1
1w ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, an OpenBao user with access to sys/leases/revoke/:lease_id in one namespace could revoke a lease in another namespace when the foreign lease_id was known…

▾ Sunlitopenbao · openbaoEPSS 0.56%via NVD
CVE-2026-55775Low· 2.3⚖ disputed
1w ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao users granted capabilities on /sys/namespaces/root within a non-root namespace could exploit special handling of the literal root path in namespa…

▾ Sunlitopenbao · openbaoEPSS 0.48%via NVD
CVE-2026-55776Medium· 6.5PoC
1w ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, an authenticated OpenBao caller with write access to transit/keys/* could terminate the server process by setting derived to true while the type paramete…

▾ Twilightopenbao · openbaoEPSS 0.61%via NVD
CVE-2026-55701Medium· 6.9
1w ago

The OpenTelemetry Collector Contrib repository contains components for the OpenTelemetry Collector

The OpenTelemetry Collector Contrib repository contains components for the OpenTelemetry Collector. Prior to 0.151.0, the githubreceiver validates the receiver/githubreceiver/config.go RequiredHeaders configuration at startup, but receiv…

▾ Sunlitopen-telemetry · opentelemetry-collector-contribEPSS 0.70%via NVD
CVEs tagged “go” — page 4 · VulnSea