VulnSea

Tagged “go”

CVEs tagged go, newest first.

1746 CVEsRSS

CVE-2022-35930High· 7.1
4y ago

PolicyController before 0.2.1 may bypass attestation verification

PolicyController before 0.2.1 may bypass attestation verification

▾ Twilightsigstore · github.com/sigstore/policy-controllerEPSS 0.64%via OSV
GO-2022-0379None
4y ago

Type confusion in github.com/docker/distribution

Type confusion in github.com/docker/distribution

▾ Sunlitdocker · github.com/docker/distributionvia OSV
CVE-2022-25891High· 7.5
4y ago

Shoutrrr util package DoS via sending 2000, 4000, or 6000 character messages

Shoutrrr util package DoS via sending 2000, 4000, or 6000 character messages

▾ Twilightcontainrrr · github.com/containrrr/shoutrrrEPSS 1.6%via OSV
CVE-2022-31836Critical· 9.8
4y ago

Path Traversal in Beego

Path Traversal in Beego

▾ Midnightbeego · github.com/beego/beegoEPSS 1.7%via OSV
CVE-2022-33082High· 7.5PoC
4y ago

Denial of service in Open Policy Agent

Denial of service in Open Policy Agent

▾ Midnightopen-policy-agent · github.com/open-policy-agent/opaEPSS 1.7%via OSV
CVE-2022-25856High· 7.5
4y ago

Insecure path traversal in Git Trigger Source can lead to arbitrary file read

Insecure path traversal in Git Trigger Source can lead to arbitrary file read

▾ Twilightargoproj · github.com/argoproj/argo-eventsEPSS 1.9%via OSV
CVE-2022-28224Medium· 5.5
4y ago

Calico vulnerable to pod route hijacking

Calico vulnerable to pod route hijacking

▾ Sunlitprojectcalico · github.com/projectcalico/calicoEPSS 0.59%via OSV
CVE-2022-31030Medium· 5.5
4y ago

containerd CRI plugin: Host memory exhaustion through ExecSync

containerd CRI plugin: Host memory exhaustion through ExecSync

▾ Sunlitcontainerd · github.com/containerd/containerdEPSS 0.38%via OSV
CVE-2022-1708High· 7.5
4y ago

Node DOS by way of memory exhaustion through ExecSync request in CRI-O

Node DOS by way of memory exhaustion through ExecSync request in CRI-O

▾ Twilightcri-o · github.com/cri-o/cri-oEPSS 3.1%via OSV
CVE-2022-29718Medium· 6.1
4y ago

Open redirect in caddy

Open redirect in caddy

▾ Sunlitcaddyserver · github.com/caddyserver/caddyEPSS 1.0%via OSV
CVE-2021-32546Critical
4y ago

OS Command Injection in gogs

OS Command Injection in gogs

▾ Midnightgogs · gogs.io/gogsEPSS 2.1%via OSV
CVE-2020-13430Medium· 6.1
4y ago

Grafana XSS via the OpenTSDB datasource

Grafana XSS via the OpenTSDB datasource

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 1.8%via OSV
CVE-2022-29178High· 8.8
4y ago

Access to Unix domain socket can lead to privileges escalation in Cilium

Access to Unix domain socket can lead to privileges escalation in Cilium

▾ Twilightcilium · github.com/cilium/ciliumEPSS 0.28%via OSV
CVE-2020-29652High· 7.5
4y ago

golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability

golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability

▾ Twilightx · golang.org/x/cryptoEPSS 3.3%via OSV
CVE-2020-12458Medium· 5.5
4y ago

Grafana information disclosure

Grafana information disclosure

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 0.47%via OSV
CVE-2020-8567Medium· 4.9
4y ago

Kubernetes Secrets Store CSI Driver plugins arbitrary file write

Kubernetes Secrets Store CSI Driver plugins arbitrary file write

▾ Sunlithashicorp · github.com/hashicorp/vault-csi-providerEPSS 1.4%via OSV
CVE-2018-1002104Medium· 5.3
4y ago

Kubernetes ingress exposes sensitive information

Kubernetes ingress exposes sensitive information

▾ Sunlitingress-nginx · k8s.io/ingress-nginxEPSS 1.1%via OSV
CVE-2020-8553Medium· 5.9
4y ago

ingress-nginx component for Kubernetes allows file overwrite

ingress-nginx component for Kubernetes allows file overwrite

▾ Sunlitingress-nginx · k8s.io/ingress-nginxEPSS 0.89%via OSV
CVE-2019-12274High· 8.8
4y ago

Rancher Privilege Escalation Vulnerability

Rancher Privilege Escalation Vulnerability

▾ Twilightrancher · github.com/rancher/rancherEPSS 1.1%via OSV
CVE-2021-25313Medium· 6.1
4y ago

Rancher Cross-site Scripting Vulnerability

Rancher Cross-site Scripting Vulnerability

▾ Sunlitrancher · github.com/rancher/rancherEPSS 1.5%via OSV
CVE-2022-31259Critical· 9.8
4y ago

Access control bypass in beego

Access control bypass in beego

▾ Midnightbeego · github.com/beego/beego/v2EPSS 22%via OSV
CVE-2018-19653Medium· 5.9
4y ago

HashiCorp Consul can use cleartext agent-to-agent RPC communication

HashiCorp Consul can use cleartext agent-to-agent RPC communication

▾ Sunlithashicorp · github.com/hashicorp/consulEPSS 1.2%via OSV
CVE-2018-17847High· 7.5
4y ago

golang.org/x/net/html has Improper Restriction of Operations within the Bounds of a Memory Buffer

golang.org/x/net/html has Improper Restriction of Operations within the Bounds of a Memory Buffer

▾ Twilightx · golang.org/x/netEPSS 2.4%via OSV
CVE-2015-7561Low· 3.1
4y ago

Kubernetes in OpenShift3 Access Control Misconfiguration

Kubernetes in OpenShift3 Access Control Misconfiguration

▾ Sunlitkubernetes · k8s.io/kubernetesEPSS 1.4%via OSV
CVE-2021-25745High· 8.1
4y ago

Improper Input Validation in k8s.io/ingress-nginx

Improper Input Validation in k8s.io/ingress-nginx

▾ Twilightingress-nginx · k8s.io/ingress-nginxEPSS 1.2%via OSV
CVE-2022-25850High· 7.5
4y ago

ProxyScotch is vulnerable to a server-side Request Forgery (SSRF)

ProxyScotch is vulnerable to a server-side Request Forgery (SSRF)

▾ Twilighthoppscotch · github.com/hoppscotch/proxyscotchEPSS 1.4%via OSV
CVE-2022-1227High· 8.8PoC
4y ago

Podman publishes a malicious image to public registries

Podman publishes a malicious image to public registries

▾ Midnightcontainers · github.com/containers/podman/v3EPSS 4.2%via OSV
GHSA-wm2r-rp98-8pmhLow
4y ago

Exposure of SSH credentials in Rancher/Fleet

Exposure of SSH credentials in Rancher/Fleet

▾ Sunlitrancher · github.com/rancher/ranchervia OSV
CVE-2022-27652Medium· 4.8
4y ago

Incorrect Default Permissions in CRI-O

Incorrect Default Permissions in CRI-O

▾ Sunlitcri-o · github.com/cri-o/cri-oEPSS 0.25%via OSV
CVE-2022-21235Critical· 9.8
4y ago

Command Injection Vulnerability with Mercurial in VCS

Command Injection Vulnerability with Mercurial in VCS

▾ MidnightMasterminds · github.com/Masterminds/vcsEPSS 1.6%via OSV
CVEs tagged “go” — page 54 · VulnSea