Golang
62 known vulnerabilities
Top Products
Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of
On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the fina
The TIFF decoder can panic when decoding an invalid image with an out-of-bounds strip offset.
Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged
The ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label. For e
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged
Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service.
For certain crafted inputs, a 'ed25519.PrivateKey' was created by casting malformed wire bytes, leading to a panic when
An incorrectly placed cast from bytes to int allowed for server-side panic in the AES-GCM packet decoder for well-crafte
Previously, CVE-2024-45337 fixed an authorization bypass for misused ssh server configurations; if any other type of cal
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be c
When writing data larger than 4GB in a single Write call on an SSH channel, an integer overflow in the internal payload
The in-memory keyring returned by NewKeyring() silently accepted keys with the ConfirmBeforeUse constraint but never enf
When adding a key to a remote agent constraint extensions such as [email protected] were not serializ
The Verify() method for FIDO/U2F security key types ([email protected], [email protected]) did
A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection
The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessive
When an SSH server authentication callback returned PartialSuccessError with non-nil Permissions, those permissions were
An authenticated SSH client that repeatedly opened channels which were rejected by the server caused unbounded memory gr
A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum databa
Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.
The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).
If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute wit
ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite functi
CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribu
Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion
The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").
The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sa
When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it recei
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a
Parsing a WEBP image with an invalid, large size panics on 32-bit platforms.
Parsing a malicious font file can cause excessive memory allocation.
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to w
Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escapi
tar.Reader can allocate an unbounded amount of memory when reading a maliciously-crafted archive containing a large numb
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection c
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can ope
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a ve
During chain building, the amount of work that is done is not correctly limited when a large number of intermediate cert
The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented
Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the comp
SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at
A maliciously crafted TIFF file can cause image decoding to attempt to allocate up 4GiB of memory, causing either excess
Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS if the meta t
On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou
Certificate verification can panic when a certificate in the chain has an empty DNS name and another certificate in the
Frequently Asked Questions
How many CVEs affect Golang?
Golang has 62 CVE records in our database, including 11 critical and 25 high severity vulnerabilities.
What are the most severe Golang vulnerabilities?
Golang has 11 critical severity (CVSS 9.0+) and 25 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Golang vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Golang products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Golang Vulnerabilities
CyberStrike scans your infrastructure for Golang vulnerabilities and provides real-time remediation guidance.
Get Started