Gohugo
8 known vulnerabilities
Top Products
Hugo is a static site generator. From 0.123.0 to 0.161.1, a regression made RootMappingFs.statRoot use Stat (follows
Hugo is a static site generator. From v0.162.0 through v0.163.0, the default security.http.urls policy denies requests t
Hugo is a static site generator. From v0.123.0 through v0.163.0, Hugo's virtual filesystem is designed so that files und
Hugo is a static site generator. From 0.60.0 until 0.163.3, Hugo's default code-block renderer wrote the Markdown code-f
Hugo is a static site generator. From 0.91.0 until 0.162.0, resources.GetRemote enforces security.http.urls on the URL i
Hugo is a static site generator. Prior to 0.162.0, Hugo accepts content files in several markup formats. Files mapped to
Hugo is a static site generator. From 0.43 to before 0.161.0, when building a Hugo site that uses Node-based asset pipel
Hugo is a static site generator. From 0.60.0 to before 0.159.2, links and image links in the default markdown to HTML re
Frequently Asked Questions
How many CVEs affect Gohugo?
Gohugo has 8 CVE records in our database, including 0 critical and 1 high severity vulnerabilities.
What are the most severe Gohugo vulnerabilities?
Gohugo has 0 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Gohugo vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Gohugo products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Gohugo Vulnerabilities
CyberStrike scans your infrastructure for Gohugo vulnerabilities and provides real-time remediation guidance.
Get Started