Go 1.x — End of Life

Active Critical risk
17 releases in this series568 CVEs

Go 1.x — All releases

VersionReleasedActive supportEOL dateLatest patchStatusAlert me
1.26Feb 10, 2026No1.26.5Active
1.25Aug 12, 2025No1.25.12Active
1.24Feb 11, 2025Feb 10, 20261.24.13EOL
1.23Aug 13, 2024Aug 12, 20251.23.12EOL
1.22Feb 6, 2024Feb 11, 20251.22.12EOL
1.21Aug 8, 2023Aug 13, 20241.21.13EOL
1.20Feb 1, 2023Feb 6, 20241.20.14EOL
1.19Aug 2, 2022Sep 6, 20231.19.13EOL
1.18Mar 15, 2022Feb 1, 20231.18.10EOL
1.17Aug 16, 2021Aug 2, 20221.17.13EOL
1.16Feb 16, 2021Mar 15, 20221.16.15EOL
1.15Aug 11, 2020Aug 16, 20211.15.15EOL
1.14Feb 25, 2020Feb 16, 20211.14.15EOL
1.13Sep 3, 2019Aug 11, 20201.13.15EOL
1.12Feb 25, 2019Feb 25, 20201.12.17EOL
1.11Aug 24, 2018Sep 3, 20191.11.13EOL
1.10Feb 16, 2018Feb 25, 20191.10.8EOL

CVEs affecting Go 1.x (568)

CVESeverityCVSSEPSSKEVCycleDescriptionPublished
CVE-2026-42505MEDIUM5.30.25%1.19Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.24Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.23Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.16Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.15Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.22Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.21Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.20Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.12Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.11Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.10Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.26Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.25Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.17Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.13Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.14Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-42505MEDIUM5.30.25%1.18Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.10On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.16On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.15On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.22On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.21On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.20On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.19On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.18On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.14On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.13On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.12On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.11On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.26On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.17On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.25On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.24On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2026-39822HIGH7.80.23%1.23On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina…Jul 8, 2026
CVE-2023-54365HIGH7.50.57%1.14Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.13Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.12Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.11Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.10Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.21Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.18Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.19Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.20Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.15Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.16Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2023-54365HIGH7.50.57%1.17Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri…Jun 23, 2026
CVE-2026-42501HIGH7.50.23%1.22A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.26A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.10A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.11A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.12A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.13A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.14A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.15A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.16A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.17A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.18A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.19A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.20A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.21A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.23A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.24A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42501HIGH7.50.23%1.25A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa…May 7, 2026
CVE-2026-42499HIGH7.50.80%1.25Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.26Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.10Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.11Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.12Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.13Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.14Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.15Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.16Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.17Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.18Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.19Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.20Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.21Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.22Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.23Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-42499HIGH7.50.80%1.24Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.May 7, 2026
CVE-2026-39836HIGH7.50.59%1.23The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.26The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.10The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.11The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.12The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.13The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.14The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.15The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.16The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.17The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.18The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.19The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.20The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.21The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.25The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.22The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39836HIGH7.50.59%1.24The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.20If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.18If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.25If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.24If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.23If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.22If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.21If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.19If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.17If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.16If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.15If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.14If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.13If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.12If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.11If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.10If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39826MEDIUM6.10.37%1.26If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.13ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.12ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.11ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.10ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.14ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.26ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.15ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.16ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.17ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.18ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.19ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.20ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.21ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.22ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.23ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.24ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39825MEDIUM5.30.39%1.25ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.22CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.26CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.10CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.11CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.12CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.13CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.14CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.15CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.16CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.17CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.18CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.19CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.20CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.21CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.23CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.24CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39823MEDIUM6.10.31%1.25CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.25Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.26Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.10Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.11Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.12Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.13Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.14Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.15Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.17Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.18Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.19Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.20Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.21Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.22Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.16Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.23Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39820HIGH7.50.78%1.24Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.26The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.10The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.11The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.12The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.13The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.14The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.15The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.16The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.17The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.18The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.19The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.20The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.21The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.22The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.23The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.24The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39819MEDIUM5.30.18%1.25The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.25The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.26The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.10The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.11The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.12The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.13The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.14The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.15The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.16The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.17The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.18The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.19The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.20The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.21The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.22The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.23The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-39817MEDIUM5.90.17%1.24The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.17When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.26When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.10When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.11When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.12When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.13When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.14When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.15When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.16When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.18When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.19When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.20When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.21When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.22When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.23When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.24When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33814HIGH7.50.78%1.25When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.26When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.10When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.11When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.12When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.13When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.14When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.15When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.16When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.17When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.18When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.19When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.20When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.21When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.22When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.23When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.24When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33811HIGH7.50.81%1.25When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a…May 7, 2026
CVE-2026-33810HIGH8.20.34%1.26When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to w…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.10Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.26Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.16Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.15Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.24Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.23Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.22Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.21Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.20Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.11Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.19Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.25Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.18Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.17Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.14Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.13Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32289MEDIUM6.10.29%1.12Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.24tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.26tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.25tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.17tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.16tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.15tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.23tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.22tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.21tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.20tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.19tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.18tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.14tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.13tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.12tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.11tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32288MEDIUM5.50.29%1.10tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.20If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.21If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.22If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.23If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.24If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.15If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.16If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.17If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.25If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.26If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.10If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.11If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.12If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.13If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.14If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.18If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32283HIGH7.50.62%1.19If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.23On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.25On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.17On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.16On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.15On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.24On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.18On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.22On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.26On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.10On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.11On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.12On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.13On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.14On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.21On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.20On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32282MEDIUM6.40.29%1.19On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.14Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.18Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.19Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.26Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.20Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.21Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.22Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.23Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.10Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.24Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.15Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.16Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.17Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.25Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.11Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.12Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32281HIGH7.50.36%1.13Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.19During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.25During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.17During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.16During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.15During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.24During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.23During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.22During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.21During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.20During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.18During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.14During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.13During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.12During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.11During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.10During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-32280HIGH7.50.61%1.26During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.11The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.12The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.13The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.14The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.18The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.19The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.20The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.21The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.22The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.23The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.24The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.15The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.26The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.16The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.25The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.10The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27144HIGH7.10.26%1.17The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.19Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.25Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.17Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.16Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.15Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.24Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.23Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.22Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.21Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.20Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.18Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.14Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.13Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.12Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.26Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.10Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27143CRITICAL9.80.54%1.11Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp…Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.14SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.13SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.12SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.25SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.17SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.16SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.15SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.24SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.23SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.22SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.21SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.20SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.19SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.18SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.11SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.26SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27140HIGH8.80.66%1.10SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at …Apr 8, 2026
CVE-2026-27142MEDIUM6.10.33%1.10Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.25Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.17Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.16Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.15Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.24Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.23Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.22Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.21Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.20Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.19Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.18Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.14Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.13Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.12Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.11Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27142MEDIUM6.10.33%1.26Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.24On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.23On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.15On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.25On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.17On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.16On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.26On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.10On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.11On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.12On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.13On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.14On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.18On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.19On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.20On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.21On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27139LOW2.50.20%1.22On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou…Mar 6, 2026
CVE-2026-27138MEDIUM5.90.35%1.26Certificate verification can panic when a certificate in the chain has an empty DNS name and another certificate in the …Mar 6, 2026
CVE-2026-27137HIGH7.50.61%1.26When verifying a certificate chain which contains a certificate containing multiple email address constraints which shar…Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.22url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.10url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.11url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.12url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.13url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.14url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.18url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.19url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.26url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.25url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.17url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.16url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.15url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.24url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.23url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.21url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2026-25679HIGH7.50.73%1.20url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.Mar 6, 2026
CVE-2025-68121CRITICAL10.00.77%1.19During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.10During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.20During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.21During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.22During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.23During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.24During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.15During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.16During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.17During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.18During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.25During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.26During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.11During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.14During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.12During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-68121CRITICAL10.00.77%1.13During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between th…Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.25A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.17A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.16A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.15A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.24A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.23A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.10A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.22A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.11A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.12A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.13A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.14A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.18A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.19A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.20A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-61732HIGH8.60.47%1.21A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.Feb 5, 2026
CVE-2025-22873LOW3.80.24%1.15It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.16It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.17It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.13It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.14It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.18It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.19It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.11It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.20It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.21It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.24It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.10It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.12It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.22It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-22873LOW3.80.24%1.23It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp…Feb 4, 2026
CVE-2025-68119HIGH7.00.34%1.23Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.22Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.24Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.15Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.16Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.17Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.25Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.10Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.11Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.12Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.13Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.14Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.18Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.19Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.20Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-68119HIGH7.00.34%1.21Downloading and building modules with malicious version strings can cause local code execution. On systems with Mercuria…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.23Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.19Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.18Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.14Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.13Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.12Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.11Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.10Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.25Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.17Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.16Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.15Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.24Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.22Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.21Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61731HIGH7.80.53%1.20Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.12During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.16During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.15During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.24During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.23During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.22During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.21During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.13During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.14During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.18During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.20During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.19During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.25During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.10During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.11During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61730MEDIUM5.30.28%1.17During the TLS 1.3 handshake if multiple messages are sent in records that span encryption level boundaries (for instanc…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.15archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.11archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.12archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.13archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.14archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.18archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.19archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.20archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.21archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.22archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.23archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.24archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.10archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.16archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.17archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61728MEDIUM6.50.64%1.25archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is open…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.16The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.15The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.24The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.23The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.22The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.21The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.20The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.19The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.18The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.14The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.13The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.12The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.11The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.10The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.25The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026
CVE-2025-61726HIGH7.51.94%1.17The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query p…Jan 28, 2026

Frequently asked questions

Is Go 1 end of life?

Partially. Some Go 1.x releases have reached EOL. Check the version table above for the exact status of each sub-release.

What CVEs affect Go 1?

There are 568 CVEs tracked for Go 1.x, including 34 critical severity issues. See the full list above with CVSS and EPSS scores.

What is the latest Go 1 version?

The latest Go 1.x patch release is 1.26.5, released on July 7, 2026. Always run the latest patch to benefit from all security fixes.

When was Go 1 first released?

Go 1.0 was initially released on February 10, 2026. See the full version timeline in the table above.

Is it safe to run Go 1 in production?

Go 1 is still supported and safe for production use. Ensure you are running the latest patch version (1.26.5) to have all security fixes applied.

Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA