Go incidents
Recent Go vulnerabilities and malicious packages from OSV and CISA KEV, enriched with EPSS exploit probability.
3X-UI Vulnerable to Authenticated Arbitrary File Write via Database Import and Xray Log Path Manipulation
3X-UI Vulnerable to Authenticated Arbitrary File Write via Database Import and Xray Log Path Manipulation
Cloudreve's remote download file paths can escape the selected destination directory
Cloudreve's remote download file paths can escape the selected destination directory
Gorilla WebSocket Uses Cryptographically Weak PRNG for WebSocket Mask Key
Gorilla WebSocket Uses Cryptographically Weak PRNG for WebSocket Mask Key
netfoil vulnerable to improper handling of untrusted DoH response data
netfoil vulnerable to improper handling of untrusted DoH response data
Cloudreve has Broken Access Control - Revoked Share Access Still Allows Signed File URL Generation via Cached context_hint
Cloudreve has Broken Access Control - Revoked Share Access Still Allows Signed File URL Generation via Cached context_hint
kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding
kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding
Atlantis Workspace Handling has Path Traversal that Allows Out-of-Bounds Directory Deletion/Creation
Atlantis Workspace Handling has Path Traversal that Allows Out-of-Bounds Directory Deletion/Creation
kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS
kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS
Mailpit: SMTP DATA line reader buffers over-limit input before size enforcement
Mailpit: SMTP DATA line reader buffers over-limit input before size enforcement
Tekton Pipelines-as-Code: Unscoped GitHub App installation token allows unauthorized access to private repositories via remote task resolution
Tekton Pipelines-as-Code: Unscoped GitHub App installation token allows unauthorized access to private repositories via remote task resolution
Velero vulnerable to file path traversal when extracting from backup's tarball
Velero vulnerable to file path traversal when extracting from backup's tarball
OpenTelemetry-Go: Unsynchronized baggage map can panic under concurrent access
OpenTelemetry-Go: Unsynchronized baggage map can panic under concurrent access
OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or compromised servers
OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or compromised servers
Dgraph Alpha group stores can be replaced via unauthenticated external snapshot import
Dgraph Alpha group stores can be replaced via unauthenticated external snapshot import
Fleet: Unauthenticated download of in-house iOS app binaries via predictable URLs
Fleet: Unauthenticated download of in-house iOS app binaries via predictable URLs
Pipelines-as-Code GitHub App token request can be redirected via untrusted Enterprise Host header
Pipelines-as-Code GitHub App token request can be redirected via untrusted Enterprise Host header
Coder: Stored HTML injection via unescaped ApplicationName and LogoURL appearance settings
Coder: Stored HTML injection via unescaped ApplicationName and LogoURL appearance settings
Ember has unneutralized terminal escape/control sequences from Caddy logs injected into the operator's TUI
Ember has unneutralized terminal escape/control sequences from Caddy logs injected into the operator's TUI
Mailpit: WebSocket origin check bypass via percent-encoded path (regression of CVE-2026-22689)
Mailpit: WebSocket origin check bypass via percent-encoded path (regression of CVE-2026-22689)
Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison
Coder: Login endpoint user enumeration via timing-defense placeholder in password comparison
Fleet: ORDER BY column injection on activity list endpoints
Fleet: ORDER BY column injection on activity list endpoints
vouch-proxy has an Unbounded Multipart Cookie Allocation DoS
vouch-proxy has an Unbounded Multipart Cookie Allocation DoS
Fleet: SQL injection in Okta conditional access endpoint allows host-controlled compromise of the Fleet database
Fleet: SQL injection in Okta conditional access endpoint allows host-controlled compromise of the Fleet database
Uprobe gadgets: unprivileged container's ld.so.cache causes high CPU utilization and container startup DoS
Uprobe gadgets: unprivileged container's ld.so.cache causes high CPU utilization and container startup DoS
SiYuan vulnerable to remote code execution via marketplace XSS in github.com/siyuan-note/siyuan/kernel
SiYuan vulnerable to remote code execution via marketplace XSS in github.com/siyuan-note/siyuan/kernel
BuildKit has a possible runtime DoS via unbounded group parsing
BuildKit has a possible runtime DoS via unbounded group parsing
BuildKit: Custom frontend could bypass Seccomp/AppArmor
BuildKit: Custom frontend could bypass Seccomp/AppArmor
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability in github.com/apache/answer
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability in github.com/apache/answer
moby/go-archive: Crafted tar archive can write outside the extraction directory
moby/go-archive: Crafted tar archive can write outside the extraction directory
JSON private fields exposed via NativeTypes and ParseStructTag in github.com/google/cel-go
JSON private fields exposed via NativeTypes and ParseStructTag in github.com/google/cel-go
Wings exposes node configuration secrets through egg configuration-file templating in github.com/pterodactyl/wings
Wings exposes node configuration secrets through egg configuration-file templating in github.com/pterodactyl/wings
Assisted Migration Agent: Hardcoded insecure Transport Layer Security (TLS) connections during vCenter communication in github.com/kubev2v/assisted-migration-agent
Assisted Migration Agent: Hardcoded insecure Transport Layer Security (TLS) connections during vCenter communication in github.com/kubev2v/assisted-migration-agent
OpenList: Search metadata/count disclosure via Non-Separator-Aware Path Check in Bleve Search in github.com/OpenListTeam/OpenList
OpenList: Search metadata/count disclosure via Non-Separator-Aware Path Check in Bleve Search in github.com/OpenListTeam/OpenList
Cloudreve: Broken Access Control in file event stream: a single-file share recipient is subscribed to the owner's parent folder and receives activity events for unshared siblings in github.com/cloudreve/Cloudreve
Cloudreve: Broken Access Control in file event stream: a single-file share recipient is subscribed to the owner's parent folder and receives activity events for unshared siblings in github.com/cloudreve/Cloudreve
Kite Kubernetes proxy path traversal allows authenticated users to bypass RBAC and read cluster-wide resources in github.com/zxh326/kite
Kite Kubernetes proxy path traversal allows authenticated users to bypass RBAC and read cluster-wide resources in github.com/zxh326/kite
Cloudreve OAuth Admin.Read scope can update OneDrive storage policy credentials in github.com/cloudreve/Cloudreve
Cloudreve OAuth Admin.Read scope can update OneDrive storage policy credentials in github.com/cloudreve/Cloudreve
Traefik: Cross-user response poisoning via proxied CONNECT on Traefik's shared backend keep-alive pool in github.com/traefik/traefik
Traefik: Cross-user response poisoning via proxied CONNECT on Traefik's shared backend keep-alive pool in github.com/traefik/traefik
Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests in github.com/projectcapsule/capsule
Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests in github.com/projectcapsule/capsule
goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884) in goshs.de/goshs
goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884) in goshs.de/goshs
GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS in github.com/gopacket/gopacket
GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS in github.com/gopacket/gopacket
Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory in github.com/fission/fission
Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory in github.com/fission/fission
OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth) in github.com/OliveTin/OliveTin
OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth) in github.com/OliveTin/OliveTin
Lima: An arbitrary user in a QEMU VM could gain the root privilege in the VM via the guest agent socket in github.com/lima-vm/lima
Lima: An arbitrary user in a QEMU VM could gain the root privilege in the VM via the guest agent socket in github.com/lima-vm/lima
grepai Uses a Broken or Risky Cryptographic Algorithm in github.com/yoanbernabeu/grepai
grepai Uses a Broken or Risky Cryptographic Algorithm in github.com/yoanbernabeu/grepai
Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation) in github.com/projectcapsule/capsule
Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation) in github.com/projectcapsule/capsule
Traefik: Gateway API route identity collision allows cross-namespace backend hijacking in github.com/traefik/traefik
Traefik: Gateway API route identity collision allows cross-namespace backend hijacking in github.com/traefik/traefik
Cloudreve: Path Traversal in WOPI PUT_RELATIVE Allows Arbitrary File Creation in Owner Account in github.com/cloudreve/Cloudreve
Cloudreve: Path Traversal in WOPI PUT_RELATIVE Allows Arbitrary File Creation in Owner Account in github.com/cloudreve/Cloudreve
Cosmos-Server has an authentication bypass via forward-auth header smuggling on Constellation tunnel in github.com/azukaar/cosmos-server
Cosmos-Server has an authentication bypass via forward-auth header smuggling on Constellation tunnel in github.com/azukaar/cosmos-server
Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion
Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion
frp: Unauthenticated Remote Denial of Service in the frp SSH Tunnel Gateway via Integer Overflow in github.com/fatedier/frp
frp: Unauthenticated Remote Denial of Service in the frp SSH Tunnel Gateway via Integer Overflow in github.com/fatedier/frp
GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenticated remote DoS) in github.com/gopacket/gopacket
GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenticated remote DoS) in github.com/gopacket/gopacket
Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption in github.com/fission/fission
Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption in github.com/fission/fission
Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens in github.com/azukaar/cosmos-server
Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens in github.com/azukaar/cosmos-server
goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite in github.com/patrickhener/goshs
goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite in github.com/patrickhener/goshs
Pterodactyl's improper JWT scoping allows subuser to upload files when not explicitly granted `file.create` permissions in github.com/pterodactyl/wings
Pterodactyl's improper JWT scoping allows subuser to upload files when not explicitly granted `file.create` permissions in github.com/pterodactyl/wings
Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape in github.com/fission/fission
Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape in github.com/fission/fission
goshs has ACL Bypass & Path Traversal in github.com/patrickhener/goshs
goshs has ACL Bypass & Path Traversal in github.com/patrickhener/goshs
Logging operator has Fluentd configuration injection that allows remote code execution in github.com/kube-logging/logging-operator
Logging operator has Fluentd configuration injection that allows remote code execution in github.com/kube-logging/logging-operator
goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx) in github.com/patrickhener/goshs
goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx) in github.com/patrickhener/goshs
OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check in github.com/OliveTin/OliveTin
OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check in github.com/OliveTin/OliveTin
Openshift Migration Advisor agent-API fails to validate JWT source_id claim, allowing cross-tenant data manipulation in github.com/kubev2v/migration-planner
Openshift Migration Advisor agent-API fails to validate JWT source_id claim, allowing cross-tenant data manipulation in github.com/kubev2v/migration-planner
songquanpeng one-api has an issue that results in business logic errors
songquanpeng one-api has an issue that results in business logic errors
netfoil: Incorrect block responses could lead to localhost traffic in github.com/tinfoil-factory/netfoil
netfoil: Incorrect block responses could lead to localhost traffic in github.com/tinfoil-factory/netfoil
Openshift Migration Advisor: Broken access control in migration-planner image-url endpoint exposes other users' OVA images and agent JWTs in github.com/kubev2v/migration-planner
Openshift Migration Advisor: Broken access control in migration-planner image-url endpoint exposes other users' OVA images and agent JWTs in github.com/kubev2v/migration-planner
Apache Answer has an Improper Neutralization of Alternate XSS Syntax vulnerability in github.com/apache/answer
Apache Answer has an Improper Neutralization of Alternate XSS Syntax vulnerability in github.com/apache/answer
New API: User List API Leaks Root User Access Token Leading to Privilege Escalation in github.com/QuantumNous/new-api
New API: User List API Leaks Root User Access Token Leading to Privilege Escalation in github.com/QuantumNous/new-api
Apache Answer has an Exposure of Private Personal Information to an Unauthorized Actor vulnerability in github.com/apache/answer
Apache Answer has an Exposure of Private Personal Information to an Unauthorized Actor vulnerability in github.com/apache/answer
Traefik: Authentication Bypass via Path Traversal in ReplacePathRegex Middleware in github.com/traefik/traefik
Traefik: Authentication Bypass via Path Traversal in ReplacePathRegex Middleware in github.com/traefik/traefik
Apache Answer vulnerable to Cross-site Scripting in github.com/apache/answer
Apache Answer vulnerable to Cross-site Scripting in github.com/apache/answer
Assisted Migration Agent: Path traversal in gzipped tarball handling enables arbitrary file write and remote code execution in github.com/kubev2v/assisted-migration-agent
Assisted Migration Agent: Path traversal in gzipped tarball handling enables arbitrary file write and remote code execution in github.com/kubev2v/assisted-migration-agent
Traefik: `allowCrossNamespace=false` bypass via `@kubernetescrd` TraefikService backendRef in github.com/traefik/traefik
Traefik: `allowCrossNamespace=false` bypass via `@kubernetescrd` TraefikService backendRef in github.com/traefik/traefik
New API: Redis user quota cache overwrite via PUT /api/user/self allows quota bypass in github.com/QuantumNous/new-api
New API: Redis user quota cache overwrite via PUT /api/user/self allows quota bypass in github.com/QuantumNous/new-api
uniget CLI: Metadata signature verification only runs when UNIGET_IGNORE_METADATA_SIGNATURE is set in gitlab.com/uniget-org/cli
uniget CLI: Metadata signature verification only runs when UNIGET_IGNORE_METADATA_SIGNATURE is set in gitlab.com/uniget-org/cli
Traefik: Incomplete fix for CVE-2026-33433 + CVE-2026-39858 cross-cohort: headerField underscore-variant identity spoofing in BasicAuth / DigestAuth / ForwardAuth in github.com/traefik/traefik
Traefik: Incomplete fix for CVE-2026-33433 + CVE-2026-39858 cross-cohort: headerField underscore-variant identity spoofing in BasicAuth / DigestAuth / ForwardAuth in github.com/traefik/traefik
Traefik: ForwardAuth middleware leaks X-Forwarded-Port spoofing via untrusted X-Forwarded-Proto when trustForwardHeader=false in github.com/traefik/traefik
Traefik: ForwardAuth middleware leaks X-Forwarded-Port spoofing via untrusted X-Forwarded-Proto when trustForwardHeader=false in github.com/traefik/traefik
New API: Unauthenticated payment webhooks allow memory and disk DoS via unbounded body reads and full-body logging in github.com/QuantumNous/new-api
New API: Unauthenticated payment webhooks allow memory and disk DoS via unbounded body reads and full-body logging in github.com/QuantumNous/new-api
OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output in github.com/OliveTin/OliveTin
OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output in github.com/OliveTin/OliveTin
New API: Integer overflow in quota billing yields negative charges (self-crediting) in github.com/QuantumNous/new-api
New API: Integer overflow in quota billing yields negative charges (self-crediting) in github.com/QuantumNous/new-api
FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files in github.com/gtsteffaniak/filebrowser/backend
FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files in github.com/gtsteffaniak/filebrowser/backend
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands in github.com/kubev2v/migration-planner
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands in github.com/kubev2v/migration-planner
New API: Admin can reset passkeys for same-level or higher-privileged users in github.com/QuantumNous/new-api
New API: Admin can reset passkeys for same-level or higher-privileged users in github.com/QuantumNous/new-api
Apache Answer: AdminToken not invalidated after admin deactivation in github.com/apache/answer
Apache Answer: AdminToken not invalidated after admin deactivation in github.com/apache/answer
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability in gitlab.com/uniget-org/cli
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability in gitlab.com/uniget-org/cli
SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access in github.com/seaweedfs/seaweedfs
SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access in github.com/seaweedfs/seaweedfs
SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle in github.com/seaweedfs/seaweedfs
SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle in github.com/seaweedfs/seaweedfs
S3 session token leakage on HTTPS to HTTP redirect in github.com/rclone/rclone
S3 session token leakage on HTTPS to HTTP redirect in github.com/rclone/rclone
Unbounded memory allocation in proto.UnencryptedMessage.Decode in github.com/gotd/td
Unbounded memory allocation in proto.UnencryptedMessage.Decode in github.com/gotd/td
LDAP injection via unescaped username in github.com/hyperledger/fabric-ca
LDAP injection via unescaped username in github.com/hyperledger/fabric-ca
Panic on malformed XOR-MAPPED-ADDRESS attribute in github.com/pion/stun/v3
Panic on malformed XOR-MAPPED-ADDRESS attribute in github.com/pion/stun/v3
Worktree operations may follow symlinks in github.com/go-git/go-git
Worktree operations may follow symlinks in github.com/go-git/go-git
Nil-pointer panic on content parameter without schema in github.com/getkin/kin-openapi
Nil-pointer panic on content parameter without schema in github.com/getkin/kin-openapi
AWS CDK CodeBuild S3 Log Encryption Boolean Inversion in github.com/aws/aws-cdk-go/awscdk
AWS CDK CodeBuild S3 Log Encryption Boolean Inversion in github.com/aws/aws-cdk-go/awscdk
Path traversal via crafted reference names in github.com/go-git/go-git
Path traversal via crafted reference names in github.com/go-git/go-git
S3 redirect sanitization omits sensitive headers in github.com/rclone/rclone
S3 redirect sanitization omits sensitive headers in github.com/rclone/rclone
Nil pointer dereference in Infinite Scale TUS uploads in github.com/rclone/rclone
Nil pointer dereference in Infinite Scale TUS uploads in github.com/rclone/rclone
WebDAV credential leakage on HTTPS to HTTP redirect in github.com/rclone/rclone
WebDAV credential leakage on HTTPS to HTTP redirect in github.com/rclone/rclone
Verbose stack trace disclosure in RC API error responses in github.com/rclone/rclone
Verbose stack trace disclosure in RC API error responses in github.com/rclone/rclone
Panic while parsing crafted ECDHE_PSK ServerKeyExchange in github.com/pion/dtls/v3
Panic while parsing crafted ECDHE_PSK ServerKeyExchange in github.com/pion/dtls/v3
Server-side request forgery in bidder adapters in github.com/prebid/prebid-server/v4
Server-side request forgery in bidder adapters in github.com/prebid/prebid-server/v4
Authorization bypass in serve restic in github.com/rclone/rclone
Authorization bypass in serve restic in github.com/rclone/rclone
Path traversal in serve s3 in github.com/rclone/rclone
Path traversal in serve s3 in github.com/rclone/rclone
Unsafe file permission restoration from metadata in github.com/rclone/rclone
Unsafe file permission restoration from metadata in github.com/rclone/rclone
Arbitrary file write via --links symlinks in github.com/rclone/rclone
Arbitrary file write via --links symlinks in github.com/rclone/rclone
FTP command injection via custom encoding in github.com/rclone/rclone
FTP command injection via custom encoding in github.com/rclone/rclone
Vitess: Missing authorization on vttablet /debug/vrlog exposes live VReplication SQL data
Vitess: Missing authorization on vttablet /debug/vrlog exposes live VReplication SQL data
Path traversal via crafted archive paths in github.com/rclone/rclone
Path traversal via crafted archive paths in github.com/rclone/rclone
Authentication bypass via default NoopAuthenticationFunc in github.com/getkin/kin-openapi
Authentication bypass via default NoopAuthenticationFunc in github.com/getkin/kin-openapi
Resource exhaustion via unbounded HTTP CONNECT response in github.com/rclone/rclone
Resource exhaustion via unbounded HTTP CONNECT response in github.com/rclone/rclone
Path traversal via local backend encoding in github.com/rclone/rclone
Path traversal via local backend encoding in github.com/rclone/rclone
Command execution via PowerShell smart quotes in github.com/rclone/rclone
Command execution via PowerShell smart quotes in github.com/rclone/rclone
Path traversal in serve restic in github.com/rclone/rclone
Path traversal in serve restic in github.com/rclone/rclone
OpenList: Arbitrary File Read via Path Prefix Confusion in Share Creation API in github.com/OpenListTeam/OpenList
OpenList: Arbitrary File Read via Path Prefix Confusion in Share Creation API in github.com/OpenListTeam/OpenList
Cross-forge account takeover on login in codefloe.com/crowci/crow/v6
Cross-forge account takeover on login in codefloe.com/crowci/crow/v6
Stale blob descriptor cache invalidation in github.com/distribution/distribution
Stale blob descriptor cache invalidation in github.com/distribution/distribution
Credential leakage to untrusted hosts in github.com/chrismellard/docker-credential-acr-env
Credential leakage to untrusted hosts in github.com/chrismellard/docker-credential-acr-env
Watch API authorization bypass in go.etcd.io/etcd/server/v3
Watch API authorization bypass in go.etcd.io/etcd/server/v3
Denial of service via malformed IPv4 packet in github.com/insomniacslk/dhcp
Denial of service via malformed IPv4 packet in github.com/insomniacslk/dhcp
Authorization bypass via double-encoded paths in github.com/valyala/fasthttp
Authorization bypass via double-encoded paths in github.com/valyala/fasthttp
Integer overflow in BTF parsing in github.com/cilium/ebpf
Integer overflow in BTF parsing in github.com/cilium/ebpf
Unbounded TLS handshake goroutines in go.etcd.io/etcd/client/pkg/v3
Unbounded TLS handshake goroutines in go.etcd.io/etcd/client/pkg/v3
Trivy Plugin Manager has Path Traversal that Allows Arbitrary File Write
Trivy Plugin Manager has Path Traversal that Allows Arbitrary File Write
Fleet: Observer-class users can view team enroll secrets and credential-bearing configuration via target search endpoint in github.com/fleetdm/fleet
Fleet: Observer-class users can view team enroll secrets and credential-bearing configuration via target search endpoint in github.com/fleetdm/fleet
Terragrunt: Arbitrary File Deletion via Malicious Module Manifest in github.com/gruntwork-io/terragrunt
Terragrunt: Arbitrary File Deletion via Malicious Module Manifest in github.com/gruntwork-io/terragrunt
Pocket ID has a reauthentication bypass via one-time access token login — passkey step-up requirement defeated by JWT freshness check that accepts any login method in github.com/pocket-id/pocket-id/backend
Pocket ID has a reauthentication bypass via one-time access token login — passkey step-up requirement defeated by JWT freshness check that accepts any login method in github.com/pocket-id/pocket-id/backend
uniget CLI has an EDITOR Command Injection in gitlab.com/uniget-org/cli
uniget CLI has an EDITOR Command Injection in gitlab.com/uniget-org/cli
Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass in github.com/traefik/traefik
Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass in github.com/traefik/traefik
Traefik: Kubernetes Ingress NGINX RewriteTarget Path Traversal Allows Route-Level Authentication Bypass in github.com/traefik/traefik
Traefik: Kubernetes Ingress NGINX RewriteTarget Path Traversal Allows Route-Level Authentication Bypass in github.com/traefik/traefik
Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892) in github.com/argoproj/argo-workflows
Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892) in github.com/argoproj/argo-workflows
Traefik: Gateway HTTPRoute backendRef filters can leak backend context across routes sharing a Service:port in github.com/traefik/traefik
Traefik: Gateway HTTPRoute backendRef filters can leak backend context across routes sharing a Service:port in github.com/traefik/traefik
vault-addr annotation SSRF -- webhook makes outbound HTTP call to attacker URL during admission; vault-serviceaccount enables cluster-wide SA token theft via TokenRequest API in github.com/bank-vaults/vault-secrets-webhook
vault-addr annotation SSRF -- webhook makes outbound HTTP call to attacker URL during admission; vault-serviceaccount enables cluster-wide SA token theft via TokenRequest API in github.com/bank-vaults/vault-secrets-webhook
Weaviate has an Improper Authorization issue in github.com/weaviate/weaviate
Weaviate has an Improper Authorization issue in github.com/weaviate/weaviate
Oh My Posh: Terminal escape sequence injection via unsanitized prompt segment data in github.com/jandedobbeleer/oh-my-posh
Oh My Posh: Terminal escape sequence injection via unsanitized prompt segment data in github.com/jandedobbeleer/oh-my-posh
sigstore-go fails to check signature timestamps against a signing key's validity period in github.com/sigstore/sigstore-go
sigstore-go fails to check signature timestamps against a signing key's validity period in github.com/sigstore/sigstore-go
grepai Uses a Broken or Risky Cryptographic Algorithm in github.com/yoanbernabeu/grepai
grepai Uses a Broken or Risky Cryptographic Algorithm in github.com/yoanbernabeu/grepai
Traefik: BasicAuth singleflight key collision allows authenticated identity spoofing in github.com/traefik/traefik
Traefik: BasicAuth singleflight key collision allows authenticated identity spoofing in github.com/traefik/traefik
Openshift Migration Advisor lacks proper authorization and filtering for its DELETE /api/v1/sources API in github.com/kubev2v/migration-planner
Openshift Migration Advisor lacks proper authorization and filtering for its DELETE /api/v1/sources API in github.com/kubev2v/migration-planner
GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler in github.com/github/github-mcp-server
GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler in github.com/github/github-mcp-server
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability in github.com/apache/answer
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability in github.com/apache/answer
Oh My Posh: Arbitrary command execution via template injection in the path segment in github.com/jandedobbeleer/oh-my-posh
Oh My Posh: Arbitrary command execution via template injection in the path segment in github.com/jandedobbeleer/oh-my-posh
openhole-server vulnerable to path traversal via URL-decoded request path in github.com/bablilayoub/openhole
openhole-server vulnerable to path traversal via URL-decoded request path in github.com/bablilayoub/openhole
Cloudreve: Information Exposure in `GET /api/v4/user/search`: `SearchActive` omits the active-status predicate, leaking inactive/banned account emails in github.com/cloudreve/Cloudreve
Cloudreve: Information Exposure in `GET /api/v4/user/search`: `SearchActive` omits the active-status predicate, leaking inactive/banned account emails in github.com/cloudreve/Cloudreve
Cloudreve: Denial of Service - Image decompression / pixel bomb in thumbnail & avatar decoding crashes the server in github.com/cloudreve/Cloudreve
Cloudreve: Denial of Service - Image decompression / pixel bomb in thumbnail & avatar decoding crashes the server in github.com/cloudreve/Cloudreve
Cloudreve Admin.Read OAuth tokens can trigger server-side node test requests in github.com/cloudreve/Cloudreve
Cloudreve Admin.Read OAuth tokens can trigger server-side node test requests in github.com/cloudreve/Cloudreve
ZITADEL Users Can Self-Verify Email/Phone via API in github.com/zitadel/zitadel
ZITADEL Users Can Self-Verify Email/Phone via API in github.com/zitadel/zitadel
Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks in github.com/fission/fission
Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks in github.com/fission/fission
webtransport-go: Memory Exhaustion Attack due to Buffering of Unknown Capsules in github.com/quic-go/webtransport-go
webtransport-go: Memory Exhaustion Attack due to Buffering of Unknown Capsules in github.com/quic-go/webtransport-go
Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service in github.com/pterodactyl/wings
Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service in github.com/pterodactyl/wings
Cloudreve WOPI view sessions can write files and WOPI access token secret is ignored in github.com/cloudreve/Cloudreve
Cloudreve WOPI view sessions can write files and WOPI access token secret is ignored in github.com/cloudreve/Cloudreve
Pocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restrictions in github.com/pocket-id/pocket-id/backend
Pocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restrictions in github.com/pocket-id/pocket-id/backend
Apache Answer has an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in github.com/apache/answer
Apache Answer has an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in github.com/apache/answer
Authorizer: Zero-click account takeover via OAuth identity linking to unverified email accounts in github.com/authorizerdev/authorizer
Authorizer: Zero-click account takeover via OAuth identity linking to unverified email accounts in github.com/authorizerdev/authorizer
goshs has a Path Traversal issue in github.com/patrickhener/goshs
goshs has a Path Traversal issue in github.com/patrickhener/goshs
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure in github.com/free5gc/ausf
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure in github.com/free5gc/ausf
OpenList: Authenticated users can rename files outside their base path via batch rename `src_name` traversal in github.com/OpenListTeam/OpenList
OpenList: Authenticated users can rename files outside their base path via batch rename `src_name` traversal in github.com/OpenListTeam/OpenList
Wings: Maliciously or erroneously created parsed config files can cause wings process to OOM in github.com/pterodactyl/wings
Wings: Maliciously or erroneously created parsed config files can cause wings process to OOM in github.com/pterodactyl/wings
Gophish contains a denial of service vulnerability in github.com/gophish/gophish
Gophish contains a denial of service vulnerability in github.com/gophish/gophish
uniget CLI: Metadata signature verification only runs when UNIGET_IGNORE_METADATA_SIGNATURE is set
uniget CLI: Metadata signature verification only runs when UNIGET_IGNORE_METADATA_SIGNATURE is set
New API: Unauthenticated payment webhooks allow memory and disk DoS via unbounded body reads and full-body logging
New API: Unauthenticated payment webhooks allow memory and disk DoS via unbounded body reads and full-body logging
New API: Redis user quota cache overwrite via PUT /api/user/self allows quota bypass
New API: Redis user quota cache overwrite via PUT /api/user/self allows quota bypass
New API: User List API Leaks Root User Access Token Leading to Privilege Escalation
New API: User List API Leaks Root User Access Token Leading to Privilege Escalation
Terragrunt: Arbitrary File Deletion via Malicious Module Manifest
Terragrunt: Arbitrary File Deletion via Malicious Module Manifest
New API: Admin can reset passkeys for same-level or higher-privileged users
New API: Admin can reset passkeys for same-level or higher-privileged users
github.com/QuantumNous/new-api: 0.9.1.3 → 1.0.0-rc.7
uniget CLI has an EDITOR Command Injection
uniget CLI has an EDITOR Command Injection
New API: Integer overflow in quota billing yields negative charges (self-crediting)
New API: Integer overflow in quota billing yields negative charges (self-crediting)
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability
Excessive memory allocation during VP8L decoding in golang.org/x/image
Excessive memory allocation during VP8L decoding in golang.org/x/image
Fabric CA Developer's Guide: LDAP Injection via Unescaped Username in GetUser Filter
Fabric CA Developer's Guide: LDAP Injection via Unescaped Username in GetUser Filter
Authorizer: Zero-click account takeover via OAuth identity linking to unverified email accounts
Authorizer: Zero-click account takeover via OAuth identity linking to unverified email accounts
Lima: An arbitrary user in a QEMU VM could gain the root privilege in the VM via the guest agent socket
Lima: An arbitrary user in a QEMU VM could gain the root privilege in the VM via the guest agent socket
Fix Javascript regexp context tracking in html/template
Fix Javascript regexp context tracking in html/template
Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892)
Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892)
Add recursion depth guard during decode in encoding/xml
Add recursion depth guard during decode in encoding/xml
Apply ReadHeaderTimeout when doing unencrypted HTTP/2 check in net/http
Apply ReadHeaderTimeout when doing unencrypted HTTP/2 check in net/http
Ignore unrelated, unauthenticated hashes in Lookup in golang.org/x/mod/sumdb
Ignore unrelated, unauthenticated hashes in Lookup in golang.org/x/mod/sumdb
Enforce maximum recursion depth in encoding/asn1
Enforce maximum recursion depth in encoding/asn1
Avoid quadratic complexity in resolvePath in net/url
Avoid quadratic complexity in resolvePath in net/url
Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog
Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog
Limit handshake messages we are willing to accept post-handshake in crypto/tls
Limit handshake messages we are willing to accept post-handshake in crypto/tls
Fleet: Observer-class users can view team enroll secrets and credential-bearing configuration via target search endpoint
Fleet: Observer-class users can view team enroll secrets and credential-bearing configuration via target search endpoint
SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access
SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access
Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts in github.com/traefik/traefik
Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts in github.com/traefik/traefik
Unauthenticated backend instantiation in github.com/rclone/rclone
Unauthenticated backend instantiation in github.com/rclone/rclone
Unauthenticated command execution in rclone rcd via inline remotes in github.com/rclone/rclone
Unauthenticated command execution in rclone rcd via inline remotes in github.com/rclone/rclone
Nezha's authenticated agents can forge service-monitor results for other users' services in github.com/nezhahq/nezha
Nezha's authenticated agents can forge service-monitor results for other users' services in github.com/nezhahq/nezha
VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf in github.com/canonical/lxd
VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf in github.com/canonical/lxd
SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle
SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle
Type field in restricted TLS certificate allows privilege escalation in github.com/canonical/lxd
Type field in restricted TLS certificate allows privilege escalation in github.com/canonical/lxd
Heimdall: IP Spoofing via Unvalidated Forwarding Headers in github.com/dadrus/heimdall
Heimdall: IP Spoofing via Unvalidated Forwarding Headers in github.com/dadrus/heimdall
Traefik: SNICheck ignores wildcard TLSOptions mappings in github.com/traefik/traefik
Traefik: SNICheck ignores wildcard TLSOptions mappings in github.com/traefik/traefik
Authorization and Cookie headers forwarded to error page service in github.com/traefik/traefik
Authorization and Cookie headers forwarded to error page service in github.com/traefik/traefik
Unauthenticated restoreTenant mutation allows database overwrite and SSRF in github.com/dgraph-io/dgraph
Unauthenticated restoreTenant mutation allows database overwrite and SSRF in github.com/dgraph-io/dgraph
Dgraph: Unauthenticated admin token disclosure via /debug/pprof/cmdline in github.com/dgraph-io/dgraph
Dgraph: Unauthenticated admin token disclosure via /debug/pprof/cmdline in github.com/dgraph-io/dgraph
Pre-Auth DQL injection in upsert condition field in github.com/dgraph-io/dgraph
Pre-Auth DQL injection in upsert condition field in github.com/dgraph-io/dgraph
LXD: Importing a crafted backup leads to project restriction bypass in github.com/canonical/lxd
LXD: Importing a crafted backup leads to project restriction bypass in github.com/canonical/lxd
go-git: Malicious reference names may modify files outside the reference storage
go-git: Malicious reference names may modify files outside the reference storage
go-git: Worktree operations may follow symlinks
go-git: Worktree operations may follow symlinks
Traefik: Cross-user response poisoning via proxied CONNECT on Traefik's shared backend keep-alive pool
Traefik: Cross-user response poisoning via proxied CONNECT on Traefik's shared backend keep-alive pool
Traefik: ForwardAuth middleware leaks X-Forwarded-Port spoofing via untrusted X-Forwarded-Proto when trustForwardHeader=false
Traefik: ForwardAuth middleware leaks X-Forwarded-Port spoofing via untrusted X-Forwarded-Proto when trustForwardHeader=false
Traefik: Incomplete fix for CVE-2026-33433 + CVE-2026-39858 cross-cohort: headerField underscore-variant identity spoofing in BasicAuth / DigestAuth / ForwardAuth
Traefik: Incomplete fix for CVE-2026-33433 + CVE-2026-39858 cross-cohort: headerField underscore-variant identity spoofing in BasicAuth / DigestAuth / ForwardAuth
Traefik: BasicAuth singleflight key collision allows authenticated identity spoofing
Traefik: BasicAuth singleflight key collision allows authenticated identity spoofing
Traefik: Gateway HTTPRoute backendRef filters can leak backend context across routes sharing a Service:port
Traefik: Gateway HTTPRoute backendRef filters can leak backend context across routes sharing a Service:port
Traefik: `allowCrossNamespace=false` bypass via `@kubernetescrd` TraefikService backendRef
Traefik: `allowCrossNamespace=false` bypass via `@kubernetescrd` TraefikService backendRef
Traefik: Authentication Bypass via Path Traversal in ReplacePathRegex Middleware
Traefik: Authentication Bypass via Path Traversal in ReplacePathRegex Middleware
Traefik: Kubernetes Ingress NGINX RewriteTarget Path Traversal Allows Route-Level Authentication Bypass
Traefik: Kubernetes Ingress NGINX RewriteTarget Path Traversal Allows Route-Level Authentication Bypass
Traefik: Gateway API route identity collision allows cross-namespace backend hijacking
Traefik: Gateway API route identity collision allows cross-namespace backend hijacking
rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories
rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories
Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass
Traefik CRD IngressRouteTCP ServersTransport Cross-Provider Namespace Bypass
rclone archive extract allows S3 destination prefix escape via crafted archive paths
rclone archive extract allows S3 destination prefix escape via crafted archive paths
rclone: S3 backend does not strip X-Amz-Security-Token on a same-host HTTPS->HTTP redirect
rclone: S3 backend does not strip X-Amz-Security-Token on a same-host HTTPS->HTTP redirect
rclone: FTP Command Arguments Permit CRLF Injection When Custom Encoding Preserves Newlines
rclone: FTP Command Arguments Permit CRLF Injection When Custom Encoding Preserves Newlines
rclone: Local Encoding Path Traversal
rclone: Local Encoding Path Traversal
rclone: WebDAV Credentials Survive a Same-Host HTTPS-to-HTTP Redirect
rclone: WebDAV Credentials Survive a Same-Host HTTPS-to-HTTP Redirect
rclone: S3 Redirect Sanitization Omits IBM IAM Bearer Tokens and SSE-C Keys
rclone: S3 Redirect Sanitization Omits IBM IAM Bearer Tokens and SSE-C Keys
rclone: Path traversal in serve s3 allows reading and overwriting root-level files
rclone: Path traversal in serve s3 allows reading and overwriting root-level files
rclone: Verbose Stack Trace Disclosure in RC API Error Responses
rclone: Verbose Stack Trace Disclosure in RC API Error Responses
rclone: Infinite Scale TUS Creation Transport Error Causes a Nil-Response Panic
rclone: Infinite Scale TUS Creation Transport Error Causes a Nil-Response Panic
rclone local `--metadata` applies attacker-controlled mode/uid - setuid binary planted from an untrusted remote
rclone local `--metadata` applies attacker-controlled mode/uid - setuid binary planted from an untrusted remote
rclone: Incomplete path validation allows backend root escape in serve restic
rclone: Incomplete path validation allows backend root escape in serve restic
rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote
rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote
rclone: PowerShell Smart-Quote Filename Injection Enables SFTP Server-Side Command Execution
rclone: PowerShell Smart-Quote Filename Injection Enables SFTP Server-Side Command Execution
rclone: Unbounded HTTP CONNECT Response Headers Can Exhaust rclone Memory
rclone: Unbounded HTTP CONNECT Response Headers Can Exhaust rclone Memory
Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion
Traefik Gateway API HTTPRoute BackendRef ExtensionRef Namespace Confusion
Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)
Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)
Wings: Maliciously or erroneously created parsed config files can cause wings process to OOM
Wings: Maliciously or erroneously created parsed config files can cause wings process to OOM
Wings exposes node configuration secrets through egg configuration-file templating
Wings exposes node configuration secrets through egg configuration-file templating
vault-addr annotation SSRF -- webhook makes outbound HTTP call to attacker URL during admission; vault-serviceaccount enables cluster-wide SA token theft via TokenRequest API
vault-addr annotation SSRF -- webhook makes outbound HTTP call to attacker URL during admission; vault-serviceaccount enables cluster-wide SA token theft via TokenRequest API
Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service
Wings: Maliciously crafted packet during SFTP connection handshake causes denial of service
Pion DTLS vulnerable to denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
Pion DTLS vulnerable to denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
sigstore-go fails to check signature timestamps against a signing key's validity period
sigstore-go fails to check signature timestamps against a signing key's validity period
Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests
Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests
FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files
FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files
Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute
Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output
OliveTin: StartActionAndWait Endpoints Bypass `logs` Permission and Return Action Output
OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check
OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check
OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)
OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)
netfoil: Incorrect block responses could lead to localhost traffic
netfoil: Incorrect block responses could lead to localhost traffic
prebid-server's request forgery vulnerability allows for possible host environment data extraction
prebid-server's request forgery vulnerability allows for possible host environment data extraction
Logging operator has Fluentd configuration injection that allows remote code execution
Logging operator has Fluentd configuration injection that allows remote code execution
ZITADEL Users Can Self-Verify Email/Phone via API
ZITADEL Users Can Self-Verify Email/Phone via API
openhole-server vulnerable to path traversal via URL-decoded request path
openhole-server vulnerable to path traversal via URL-decoded request path
td has pre-auth denial of service via unbounded memory allocation in proto.UnencryptedMessage.Decode
td has pre-auth denial of service via unbounded memory allocation in proto.UnencryptedMessage.Decode
Pocket ID has a reauthentication bypass via one-time access token login — passkey step-up requirement defeated by JWT freshness check that accepts any login method
Pocket ID has a reauthentication bypass via one-time access token login — passkey step-up requirement defeated by JWT freshness check that accepts any login method
Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape
Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape
Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption
Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and cross-tenant node wall-clock corruption
goshs has ACL Bypass & Path Traversal
goshs has ACL Bypass & Path Traversal
goshs has a Path Traversal issue
goshs has a Path Traversal issue
GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler
GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler
goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx)
goshs: File-based .goshs ACL authorization bypass via the ?bulk zip-download route (unauthenticated read; residual of GHSA-wvhv-qcqf-f3cx)
GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS
GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS
Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory
Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory
Cosmos-Server has an authentication bypass via forward-auth header smuggling on Constellation tunnel
Cosmos-Server has an authentication bypass via forward-auth header smuggling on Constellation tunnel
GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenticated remote DoS)
GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenticated remote DoS)
goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884)
goshs SFTP authentication bypass via empty password (incomplete fix of CVE-2026-40884)
Pocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restrictions
Pocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restrictions
goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite
goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite
Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens
Cosmos-Server's constellation public-devices endpoint accepts arbitrary bearer tokens
Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks
Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks
Improper parsing of W3C baggage headers may lead to DoS in github.com/DataDog/dd-trace-go
Improper parsing of W3C baggage headers may lead to DoS in github.com/DataDog/dd-trace-go
CPU exhaustion in Avro decoder in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
CPU exhaustion in Avro decoder in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
Integer overflow in Avro decoder in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
Integer overflow in Avro decoder in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
Denial of service via unbounded map allocations in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
Denial of service via unbounded map allocations in github.com/iskorotkov/avro/v2 and github.com/hamba/avro/v2
Chi has an IP spoofing vulnerability in middleware.RealIP in github.com/go-chi/chi
Chi has an IP spoofing vulnerability in middleware.RealIP in github.com/go-chi/chi
Kite Kubernetes proxy path traversal allows authenticated users to bypass RBAC and read cluster-wide resources
Kite Kubernetes proxy path traversal allows authenticated users to bypass RBAC and read cluster-wide resources
Chi Middleware vulnerable to IP spoofing via X-Forwarded-For header in github.com/go-chi/chi
Chi Middleware vulnerable to IP spoofing via X-Forwarded-For header in github.com/go-chi/chi
Go-git: Improper parsing of specially crafted objects may lead to inconsistent interpretation in github.com/go-git/go-git
Go-git: Improper parsing of specially crafted objects may lead to inconsistent interpretation in github.com/go-git/go-git
OpenList: Search metadata/count disclosure via Non-Separator-Aware Path Check in Bleve Search
OpenList: Search metadata/count disclosure via Non-Separator-Aware Path Check in Bleve Search
Chi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header in github.com/go-chi/chi
Chi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header in github.com/go-chi/chi
cel-go: JSON Private Fields Exposed via NativeTypes and ParseStructTag
cel-go: JSON Private Fields Exposed via NativeTypes and ParseStructTag
Oh My Posh: Arbitrary command execution via template injection in the path segment
Oh My Posh: Arbitrary command execution via template injection in the path segment
Cloudreve Admin.Read OAuth tokens can trigger server-side node test requests
Cloudreve Admin.Read OAuth tokens can trigger server-side node test requests
Go-git: Credential leak via cross-host redirect in smart HTTP transport in github.com/go-git/go-git
Go-git: Credential leak via cross-host redirect in smart HTTP transport in github.com/go-git/go-git
Go-git: Crafted repositories may modify main and submodule .git directories in github.com/go-git/go-git
Go-git: Crafted repositories may modify main and submodule .git directories in github.com/go-git/go-git
Cloudreve: Broken Access Control in file event stream: a single-file share recipient is subscribed to the owner's parent folder and receives activity events for unshared siblings
Cloudreve: Broken Access Control in file event stream: a single-file share recipient is subscribed to the owner's parent folder and receives activity events for unshared siblings
Cloudreve OAuth Admin.Read scope can update OneDrive storage policy credentials
Cloudreve OAuth Admin.Read scope can update OneDrive storage policy credentials
etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no deadline
etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no deadline
Go-git: Malformed Git object data may cause panics or resource exhaustion in github.com/go-git/go-git
Go-git: Malformed Git object data may cause panics or resource exhaustion in github.com/go-git/go-git
kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default
kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default
Helm Chart extraction output directory collapse via Chart.yaml name dot-segment in helm.sh/helm
Helm Chart extraction output directory collapse via Chart.yaml name dot-segment in helm.sh/helm
OpenTelemetry-Go: Multi-value baggage header extraction causes excessive allocations in go.opentelemetry.io/otel
OpenTelemetry-Go: Multi-value baggage header extraction causes excessive allocations in go.opentelemetry.io/otel
frp: Unauthenticated Remote Denial of Service in the frp SSH Tunnel Gateway via Integer Overflow
frp: Unauthenticated Remote Denial of Service in the frp SSH Tunnel Gateway via Integer Overflow
Cloudreve: Denial of Service - Image decompression / pixel bomb in thumbnail & avatar decoding crashes the server
Cloudreve: Denial of Service - Image decompression / pixel bomb in thumbnail & avatar decoding crashes the server
kin-openapi openapi3filter: unauthenticated nil-pointer panic when validating a request against a `content` parameter whose media type has no schema
kin-openapi openapi3filter: unauthenticated nil-pointer panic when validating a request against a `content` parameter whose media type has no schema
Mongo-go-driver: Heap Out-of-Bounds Read in GSSAPI Error Handling in go.mongodb.org/mongo-driver
Mongo-go-driver: Heap Out-of-Bounds Read in GSSAPI Error Handling in go.mongodb.org/mongo-driver
Cloudreve: Path Traversal in WOPI PUT_RELATIVE Allows Arbitrary File Creation in Owner Account
Cloudreve: Path Traversal in WOPI PUT_RELATIVE Allows Arbitrary File Creation in Owner Account
Hardlink path traversal during tar extraction in oras.land/oras-go
Hardlink path traversal during tar extraction in oras.land/oras-go
Go-ntlmssp NTLM challenges can panic on malformed payloads in github.com/Azure/go-ntlmssp
Go-ntlmssp NTLM challenges can panic on malformed payloads in github.com/Azure/go-ntlmssp
Go-billy: Symlink resolution lack of cycle detection leads to infinite loop in github.com/go-git/go-billy
Go-billy: Symlink resolution lack of cycle detection leads to infinite loop in github.com/go-git/go-billy
etcd: Watch API authorization bypass via open-ended range requests
etcd: Watch API authorization bypass via open-ended range requests
Oras-go: Malicious registry can hijack Bearer token realm to exfiltrate credentials and refresh tokens in oras.land/oras-go
Oras-go: Malicious registry can hijack Bearer token realm to exfiltrate credentials and refresh tokens in oras.land/oras-go
Cloudreve: Information Exposure in `GET /api/v4/user/search`: `SearchActive` omits the active-status predicate, leaking inactive/banned account emails
Cloudreve: Information Exposure in `GET /api/v4/user/search`: `SearchActive` omits the active-status predicate, leaking inactive/banned account emails
Oh My Posh: Terminal escape sequence injection via unsanitized prompt segment data
Oh My Posh: Terminal escape sequence injection via unsanitized prompt segment data
webtransport-go: Memory Exhaustion Attack due to Buffering of Unknown Capsules
webtransport-go: Memory Exhaustion Attack due to Buffering of Unknown Capsules
Go-billy has path traversal vulnerabilities in github.com/go-git/go-billy
Go-billy has path traversal vulnerabilities in github.com/go-git/go-billy
Opentelemetry-go: BSD kenv command not using absolute path enables PATH hijacking in go.opentelemetry.io/otel/sdk
Opentelemetry-go: BSD kenv command not using absolute path enables PATH hijacking in go.opentelemetry.io/otel/sdk
OpenList: Authenticated users can rename files outside their base path via batch rename `src_name` traversal
OpenList: Authenticated users can rename files outside their base path via batch rename `src_name` traversal
Cloudreve WOPI view sessions can write files and WOPI access token secret is ignored
Cloudreve WOPI view sessions can write files and WOPI access token secret is ignored
OpenList: Arbitrary File Read via Path Prefix Confusion in Share Creation API
OpenList: Arbitrary File Read via Path Prefix Confusion in Share Creation API
kumactl connects to control plane without verifying TLS certificate when no CA is configured in github.com/kumahq/kuma
kumactl connects to control plane without verifying TLS certificate when no CA is configured in github.com/kumahq/kuma
Gitea: SSRF via Migration Asset Downloads Bypasses hostmatcher — Reads Internal Files and Cloud Metadata in gitea.dev
Gitea: SSRF via Migration Asset Downloads Bypasses hostmatcher — Reads Internal Files and Cloud Metadata in gitea.dev
Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin in github.com/kumahq/kuma
Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin in github.com/kumahq/kuma
kuma-dp connects to control plane without verifying TLS certificate when no CA is configured in github.com/kumahq/kuma
kuma-dp connects to control plane without verifying TLS certificate when no CA is configured in github.com/kumahq/kuma
Gitea: SSRF via Migration Asset Downloads Bypasses hostmatcher — Reads Internal Files and Cloud Metadata
Gitea: SSRF via Migration Asset Downloads Bypasses hostmatcher — Reads Internal Files and Cloud Metadata
Gitea: Branch Protection Bypass via PR Retargeting Preserves Stale `official` Approval Flag
Gitea: Branch Protection Bypass via PR Retargeting Preserves Stale `official` Approval Flag
kumactl connects to control plane without verifying TLS certificate when no CA is configured
kumactl connects to control plane without verifying TLS certificate when no CA is configured
kuma-dp connects to control plane without verifying TLS certificate when no CA is configured
kuma-dp connects to control plane without verifying TLS certificate when no CA is configured
dd-trace-go: Improper parsing of W3C baggage headers may lead to DoS
dd-trace-go: Improper parsing of W3C baggage headers may lead to DoS
Infinite loop on invalid input in golang.org/x/text
Infinite loop on invalid input in golang.org/x/text
Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage
Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage
sigstore-go has a multi-log threshold bypass via single compromised log
sigstore-go has a multi-log threshold bypass via single compromised log
Concourse login flow has an open redirect issue in github.com/concourse/concourse
Concourse login flow has an open redirect issue in github.com/concourse/concourse
Invoking Encrypted Client Hello privacy leak in crypto/tls
Invoking Encrypted Client Hello privacy leak in crypto/tls
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check in github.com/nezhahq/nezha
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check in github.com/nezhahq/nezha
GoFiber Vulnerable to X-Real-IP Spoofing via Header.Add() in BalancerForward
GoFiber Vulnerable to X-Real-IP Spoofing via Header.Add() in BalancerForward
golang.org/x/image/tiff has excessive resource consumption in PackBits decompression
golang.org/x/image/tiff has excessive resource consumption in PackBits decompression
`oras-go` tar extraction: Hardlink entry with relative Linkname escapes extract dir via process CWD resolution
`oras-go` tar extraction: Hardlink entry with relative Linkname escapes extract dir via process CWD resolution
Concourse login flow has an open redirect issue
Concourse login flow has an open redirect issue
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check
Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check
golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys
golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys
golang.org/x/crypto: Invoking client can cause server deadlock on unexpected responses
golang.org/x/crypto: Invoking client can cause server deadlock on unexpected responses
chi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header
chi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header
chi Has an IP Spoofing Vulnerability in `middleware.RealIP`
chi Has an IP Spoofing Vulnerability in `middleware.RealIP`
golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow
golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow
OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree in github.com/opentofu/opentofu
OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree in github.com/opentofu/opentofu
Distribution's tag deletion bypasses `storage.delete.enabled` configuration in github.com/distribution/distribution
Distribution's tag deletion bypasses `storage.delete.enabled` configuration in github.com/distribution/distribution
OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing in github.com/oauth2-proxy/oauth2-proxy
OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing in github.com/oauth2-proxy/oauth2-proxy
Race condition in 'docker cp' in github.com/docker/docker allows creation of arbitrary files
Race condition in 'docker cp' in github.com/docker/docker allows creation of arbitrary files
chi Middleware Vulnerable to Potential IP Spoofing via `X-Forwarded-For` Header in `Request.RemoteAddr` Resolution
chi Middleware Vulnerable to Potential IP Spoofing via `X-Forwarded-For` Header in `Request.RemoteAddr` Resolution
OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree
OpenTofu: Provider cache installation follows root-module-controlled package directory symlink and writes outside the working tree
Gophish contains a denial of service vulnerability
Gophish contains a denial of service vulnerability
Heimdall: IP Spoofing via Unvalidated Forwarding Headers
Heimdall: IP Spoofing via Unvalidated Forwarding Headers
Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts
Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts
Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix
Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix
Traefik: SNICheck ignores wildcard TLSOptions mappings, allowing domain-fronted mTLS bypass
Traefik: SNICheck ignores wildcard TLSOptions mappings, allowing domain-fronted mTLS bypass
MCP Toolbox for Databases has an Origin Validation Error
MCP Toolbox for Databases has an Origin Validation Error
Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation
Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation
Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations
Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations
Mattermost doesn't require system-level permission when patching protected default system roles
Mattermost doesn't require system-level permission when patching protected default system roles
Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints
Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints
Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel
Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel
Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync
Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync
Mattermost doesn't validate that a username returned during bot registration belongs to a bot account
Mattermost doesn't validate that a username returned during bot registration belongs to a bot account
Apache Answer: AdminToken not invalidated after admin deactivation
Apache Answer: AdminToken not invalidated after admin deactivation
Openshift Migration Advisor: Broken access control in migration-planner image-url endpoint exposes other users' OVA images and agent JWTs
Openshift Migration Advisor: Broken access control in migration-planner image-url endpoint exposes other users' OVA images and agent JWTs
Openshift Migration Advisor lacks proper authorization and filtering for its DELETE /api/v1/sources API
Openshift Migration Advisor lacks proper authorization and filtering for its DELETE /api/v1/sources API
Assisted Migration Agent: Path traversal in gzipped tarball handling enables arbitrary file write and remote code execution
Assisted Migration Agent: Path traversal in gzipped tarball handling enables arbitrary file write and remote code execution
Assisted Migration Agent: Hardcoded insecure Transport Layer Security (TLS) connections during vCenter communication
Assisted Migration Agent: Hardcoded insecure Transport Layer Security (TLS) connections during vCenter communication
Openshift Migration Advisor agent-API fails to validate JWT source_id claim, allowing cross-tenant data manipulation
Openshift Migration Advisor agent-API fails to validate JWT source_id claim, allowing cross-tenant data manipulation
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands
Openshift Migration Advisor: Improper input sanitization allows specially crafted RVTools .xlsx files to include malicious SQL commands
Apache Answer has an Exposure of Sensitive Information to an Unauthorized Actor vulnerability
Apache Answer has an Exposure of Sensitive Information to an Unauthorized Actor vulnerability
Apache Answer has an Exposure of Private Personal Information to an Unauthorized Actor vulnerability
Apache Answer has an Exposure of Private Personal Information to an Unauthorized Actor vulnerability
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability
Apache Answer has an Unrestricted Upload of File with Dangerous Type vulnerability
Apache Answer has an Improper Neutralization of Alternate XSS Syntax vulnerability
Apache Answer has an Improper Neutralization of Alternate XSS Syntax vulnerability
Apache Answer vulnerable to Cross-site Scripting
Apache Answer vulnerable to Cross-site Scripting
songquanpeng one-api has an issue that results in business logic errors
songquanpeng one-api has an issue that results in business logic errors
grepai Uses a Broken or Risky Cryptographic Algorithm
grepai Uses a Broken or Risky Cryptographic Algorithm
Weaviate has an Improper Authorization issue
Weaviate has an Improper Authorization issue
grepai Uses a Broken or Risky Cryptographic Algorithm
grepai Uses a Broken or Risky Cryptographic Algorithm
ebpf-go is vulnerable to integer overflow via LoadCollectionSpecFromReader
ebpf-go is vulnerable to integer overflow via LoadCollectionSpecFromReader
Quadratic complexity in WordDecoder.DecodeHeader in mime
Quadratic complexity in WordDecoder.DecodeHeader in mime
Arbitrary inputs are included in errors without any escaping in net/textproto
Arbitrary inputs are included in errors without any escaping in net/textproto
Inefficient candidate hostname parsing in crypto/x509
Inefficient candidate hostname parsing in crypto/x509
Nezha's authenticated agents can forge service-monitor results for other users' services
Nezha's authenticated agents can forge service-monitor results for other users' services
Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts
Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts
Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent
Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent
Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent
Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent
Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh
Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh
Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh
Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh
Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna
Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna
Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh
Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh
Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh
Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh
Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html
Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html
Invoking duplicate attributes can cause XSS in golang.org/x/net/html
Invoking duplicate attributes can cause XSS in golang.org/x/net/html
Gotenberg's DNS rebinding bypasses SSRF validation on Chromium URL conversion routes in github.com/gotenberg/gotenberg
Gotenberg's DNS rebinding bypasses SSRF validation on Chromium URL conversion routes in github.com/gotenberg/gotenberg
iskorotkov/avro: Denial-of-Service Vulnerability in Decoder
iskorotkov/avro: Denial-of-Service Vulnerability in Decoder
iskorotkov/avro: CPU Exhaustion in Decoder
iskorotkov/avro: CPU Exhaustion in Decoder
iskorotkov/avro: Integer Overflow in Decoder
iskorotkov/avro: Integer Overflow in Decoder
Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin
Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin
Quadratic string concatenation in consumePhrase in net/mail
Quadratic string concatenation in consumePhrase in net/mail
Panic in Dial and LookupPort when handling NUL byte on Windows in net
Panic in Dial and LookupPort when handling NUL byte on Windows in net
Crash when handling long CNAME response in net
Crash when handling long CNAME response in net
Quadratic string concatentation in consumeComment in net/mail
Quadratic string concatentation in consumeComment in net/mail
Prometheus Azure AD remote write OAuth client secret exposed via config API
Prometheus Azure AD remote write OAuth client secret exposed via config API
Traefik's errors middleware forwards Authorization and Cookie headers to separate error page service
Traefik's errors middleware forwards Authorization and Cookie headers to separate error page service
Distribution's tag deletion bypasses `storage.delete.enabled` configuration
Distribution's tag deletion bypasses `storage.delete.enabled` configuration
Dgraph: Pre-Auth Full Database Exfiltration via DQL Injection in Upsert Condition Field
Dgraph: Pre-Auth Full Database Exfiltration via DQL Injection in Upsert Condition Field
RClone: Unauthenticated operations/fsinfo allows attacker-controlled backend instantiation and local command execution
RClone: Unauthenticated operations/fsinfo allows attacker-controlled backend instantiation and local command execution
Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints
Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints
OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing
OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing
LXD: Update of type field in restricted TLS certificate allows privilege escalation to cluster admin
LXD: Update of type field in restricted TLS certificate allows privilege escalation to cluster admin
LXD: VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf
LXD: VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf
LXD: Importing a crafted backup leads to project restriction bypass
LXD: Importing a crafted backup leads to project restriction bypass
TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
Missing bound checks can lead to memory corruption in safe Go in cmd/compile
Missing bound checks can lead to memory corruption in safe Go in cmd/compile
Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509
Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509
Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
Unexpected work during chain building in crypto/x509
Unexpected work during chain building in crypto/x509
Inefficient policy validation in crypto/x509
Inefficient policy validation in crypto/x509
Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile
Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile
Distribution: stale blob access resurrection via repo-scoped redis descriptor cache invalidation
Distribution: stale blob access resurrection via repo-scoped redis descriptor cache invalidation
Dgraph: Pre-Auth Database Overwrite + SSRF + File Read via restoreTenant Missing Authorization
Dgraph: Pre-Auth Database Overwrite + SSRF + File Read via restoreTenant Missing Authorization
Moby has AuthZ plugin bypass when provided oversized request bodies
Moby has AuthZ plugin bypass when provided oversized request bodies
SiYuan Vulnerable to Remote Code Execution via Malicious Bazaar Package — Marketplace XSS
SiYuan Vulnerable to Remote Code Execution via Malicious Bazaar Package — Marketplace XSS
Incorrect parsing of IPv6 host literals in net/url
Incorrect parsing of IPv6 host literals in net/url
Incorrect enforcement of email constraints in crypto/x509
Incorrect enforcement of email constraints in crypto/x509
Unexpected session resumption in crypto/tls
Unexpected session resumption in crypto/tls
OpenTofu has High CPU usage in "tofu init" with maliciously-crafted module packages in .zip format in github.com/opentofu/opentofu
OpenTofu has High CPU usage in "tofu init" with maliciously-crafted module packages in .zip format in github.com/opentofu/opentofu
Client DoS via malformed server response in github.com/theupdateframework/go-tuf
Client DoS via malformed server response in github.com/theupdateframework/go-tuf
Handshake messages may be processed at the incorrect encryption level in crypto/tls
Handshake messages may be processed at the incorrect encryption level in crypto/tls
Excessive CPU consumption when building archive index in archive/zip
Excessive CPU consumption when building archive index in archive/zip
Arbitrary file write using cgo pkg-config directive in cmd/go
Arbitrary file write using cgo pkg-config directive in cmd/go
Memory exhaustion in query parameter parsing in net/url
Memory exhaustion in query parameter parsing in net/url
Open redirect vulnerability in the RedirectSlashes middleware in github.com/go-chi/chi
Open redirect vulnerability in the RedirectSlashes middleware in github.com/go-chi/chi
go-tuf affected by client DoS via malformed server response
go-tuf affected by client DoS via malformed server response
OpenTofu has High CPU usage in "tofu init" with maliciously-crafted module packages in .zip format
OpenTofu has High CPU usage in "tofu init" with maliciously-crafted module packages in .zip format
Ollama has missing authentication enabling attackers to perform model management operations in github.com/ollama/ollama
Ollama has missing authentication enabling attackers to perform model management operations in github.com/ollama/ollama
chi has an open redirect vulnerability in the RedirectSlashes middleware
chi has an open redirect vulnerability in the RedirectSlashes middleware
Cosign verification accepts any valid Rekor entry under certain conditions
Cosign verification accepts any valid Rekor entry under certain conditions
Cosign verification accepts any valid Rekor entry under certain conditions in github.com/sigstore/cosign
Cosign verification accepts any valid Rekor entry under certain conditions in github.com/sigstore/cosign
Ollama Platform has missing authentication enabling attackers to perform model management operations
Ollama Platform has missing authentication enabling attackers to perform model management operations
Excessive resource consumption when printing error string for host certificate validation in crypto/x509
Excessive resource consumption when printing error string for host certificate validation in crypto/x509
DoS risk due to unrestricted RAR dictionary sizes in github.com/nwaples/rardecode
DoS risk due to unrestricted RAR dictionary sizes in github.com/nwaples/rardecode
Panic occurs when queuing undecryptable packets after handshake completion in github.com/quic-go/quic-go
Panic occurs when queuing undecryptable packets after handshake completion in github.com/quic-go/quic-go
Panic when validating certificates with DSA public keys in crypto/x509
Panic when validating certificates with DSA public keys in crypto/x509
Unbounded allocation when parsing GNU sparse map in archive/tar
Unbounded allocation when parsing GNU sparse map in archive/tar
Repository Credentials Race Condition Crashes Argo CD Server in github.com/argoproj/argo-cd
Repository Credentials Race Condition Crashes Argo CD Server in github.com/argoproj/argo-cd
rardecode: DoS risk due to unrestricted RAR dictionary sizes
rardecode: DoS risk due to unrestricted RAR dictionary sizes
quic-go: Panic occurs when queuing undecryptable packets after handshake completion
quic-go: Panic occurs when queuing undecryptable packets after handshake completion
Repository Credentials Race Condition Crashes Argo CD Server
Repository Credentials Race Condition Crashes Argo CD Server
Go-viper's mapstructure May Leak Sensitive Information in Logs in github.com/go-viper/mapstructure
Go-viper's mapstructure May Leak Sensitive Information in Logs in github.com/go-viper/mapstructure
go-viper's mapstructure May Leak Sensitive Information in Logs When Processing Malformed Data
go-viper's mapstructure May Leak Sensitive Information in Logs When Processing Malformed Data
Host header injection which leads to open redirect in RedirectSlashes in github.com/go-chi/chi
Host header injection which leads to open redirect in RedirectSlashes in github.com/go-chi/chi
chi Allows Host Header Injection which Leads to Open Redirect in RedirectSlashes
chi Allows Host Header Injection which Leads to Open Redirect in RedirectSlashes
Mattermost fails to properly enforce access controls for guest users in github.com/mattermost/mattermost-server
Mattermost fails to properly enforce access controls for guest users in github.com/mattermost/mattermost-server
Mattermost fails to properly enforce access control restrictions for System Manager roles in github.com/mattermost/mattermost-server
Mattermost fails to properly enforce access control restrictions for System Manager roles in github.com/mattermost/mattermost-server
Mattermost fails to properly enforce access control restrictions for System Manager roles
Mattermost fails to properly enforce access control restrictions for System Manager roles
Mattermost fails to properly enforce access controls for guest users
Mattermost fails to properly enforce access controls for guest users
Query smuggling in ch-go library in github.com/ClickHouse/ch-go
Query smuggling in ch-go library in github.com/ClickHouse/ch-go
CVE-2025-1386- Query smuggling in ch-go library
CVE-2025-1386- Query smuggling in ch-go library
MinIO performs incomplete signature validation for unsigned-trailer uploads in github.com/minio/minio
MinIO performs incomplete signature validation for unsigned-trailer uploads in github.com/minio/minio
MinIO performs incomplete signature validation for unsigned-trailer uploads
MinIO performs incomplete signature validation for unsigned-trailer uploads
Excessive memory allocation during header parsing in github.com/golang-jwt/jwt
Excessive memory allocation during header parsing in github.com/golang-jwt/jwt
Kubernetes kube-apiserver Vulnerable to Race Condition in k8s.io/kubernetes
Kubernetes kube-apiserver Vulnerable to Race Condition in k8s.io/kubernetes
Kubernetes kube-apiserver Vulnerable to Race Condition
Kubernetes kube-apiserver Vulnerable to Race Condition
Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec
Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec
Vitess allows HTML injection in /debug/querylogz and /debug/env in vitess.io/vitess
Vitess allows HTML injection in /debug/querylogz and /debug/env in vitess.io/vitess
Misuse of connection.serverAuthenticate may cause authorization bypass in golang.org/x/crypto
Misuse of connection.serverAuthenticate may cause authorization bypass in golang.org/x/crypto
Vitess allows HTML injection in /debug/querylogz & /debug/env
Vitess allows HTML injection in /debug/querylogz & /debug/env
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
OpenTofu potential leaking of secret variable values when using static evaluation in v1.8 in github.com/opentofu/opentofu
OpenTofu potential leaking of secret variable values when using static evaluation in v1.8 in github.com/opentofu/opentofu
Buildah allows arbitrary directory mount
Buildah allows arbitrary directory mount
OpenTofu potential leaking of secret variable values when using static evaluation in v1.8
OpenTofu potential leaking of secret variable values when using static evaluation in v1.8
OpenShift Builder has a path traversal, allows command injection in privileged BuildContainer
OpenShift Builder has a path traversal, allows command injection in privileged BuildContainer
Buffer Overflow vulnerability in osrg gobgp in github.com/osrg/gobgp
Buffer Overflow vulnerability in osrg gobgp in github.com/osrg/gobgp
Stack exhaustion in Parse in go/build/constraint
Stack exhaustion in Parse in go/build/constraint
Missing Authorization in HashiCorp Consul in github.com/hashicorp/consul
Missing Authorization in HashiCorp Consul in github.com/hashicorp/consul
Traefik vulnerable to potential DDoS via ACME HTTPChallenge in github.com/traefik/traefik
Traefik vulnerable to potential DDoS via ACME HTTPChallenge in github.com/traefik/traefik
Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes in k8s.io/kubernetes
Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes in k8s.io/kubernetes
HashiCorp Vault Improper Input Validation vulnerability in github.com/hashicorp/vault
HashiCorp Vault Improper Input Validation vulnerability in github.com/hashicorp/vault
Traefik routes exposed with an empty TLSOption in github.com/traefik/traefik
Traefik routes exposed with an empty TLSOption in github.com/traefik/traefik
Attacker can cause Kyverno user to unintentionally consume insecure image in github.com/kyverno/kyverno
Attacker can cause Kyverno user to unintentionally consume insecure image in github.com/kyverno/kyverno
Traefik docker container using 100% CPU in github.com/traefik/traefik
Traefik docker container using 100% CPU in github.com/traefik/traefik
Traefik may display authorization header in the debug logs in github.com/traefik/traefik
Traefik may display authorization header in the debug logs in github.com/traefik/traefik
Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass in github.com/traefik/traefik
Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass in github.com/traefik/traefik
Consul Server Panic when Ingress and API Gateways Configured with Peering Connections in github.com/hashicorp/consul
Consul Server Panic when Ingress and API Gateways Configured with Peering Connections in github.com/hashicorp/consul
Kyverno vulnerable due to usage of insecure cipher in github.com/kyverno/kyverno
Kyverno vulnerable due to usage of insecure cipher in github.com/kyverno/kyverno
Kyverno resource with a deletionTimestamp may allow policy circumvention in github.com/kyverno/kyverno
Kyverno resource with a deletionTimestamp may allow policy circumvention in github.com/kyverno/kyverno
APM Server vulnerable to Insertion of Sensitive Information into Log File in github.com/elastic/apm-server
APM Server vulnerable to Insertion of Sensitive Information into Log File in github.com/elastic/apm-server
The Argo CD web terminal session does not handle the revocation of user permissions properly in github.com/argoproj/argo-cd
The Argo CD web terminal session does not handle the revocation of user permissions properly in github.com/argoproj/argo-cd
APM Server vulnerable to Insertion of Sensitive Information into Log File
APM Server vulnerable to Insertion of Sensitive Information into Log File
The Argo CD web terminal session does not handle the revocation of user permissions properly
The Argo CD web terminal session does not handle the revocation of user permissions properly
HashiCorp Vault Incorrectly Validated JSON Web Tokens (JWT) Audience Claims in github.com/hashicorp/vault
HashiCorp Vault Incorrectly Validated JSON Web Tokens (JWT) Audience Claims in github.com/hashicorp/vault
ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability in github.com/traefik/traefik
ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability in github.com/traefik/traefik
Mattermost denial of service through long emoji value in github.com/mattermost/mattermost-server
Mattermost denial of service through long emoji value in github.com/mattermost/mattermost-server
Mattermost leaks details of AD/LDAP groups of a teams in github.com/mattermost/mattermost-server
Mattermost leaks details of AD/LDAP groups of a teams in github.com/mattermost/mattermost-server
APM Server vulnerable to Insertion of Sensitive Information into Log File in github.com/elastic/apm-server
APM Server vulnerable to Insertion of Sensitive Information into Log File in github.com/elastic/apm-server
ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability
ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability
Traefik has unexpected behavior with IPv4-mapped IPv6 addresses in github.com/traefik/traefik
Traefik has unexpected behavior with IPv4-mapped IPv6 addresses in github.com/traefik/traefik
HashiCorp Vault Incorrectly Validated JSON Web Tokens (JWT) Audience Claims
HashiCorp Vault Incorrectly Validated JSON Web Tokens (JWT) Audience Claims
Traefik has unexpected behavior with IPv4-mapped IPv6 addresses
Traefik has unexpected behavior with IPv4-mapped IPv6 addresses
Mattermost incorrectly allows access individual posts in github.com/mattermost/mattermost-server
Mattermost incorrectly allows access individual posts in github.com/mattermost/mattermost-server
Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop in github.com/traefik/traefik
Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop in github.com/traefik/traefik
Traefik affected by HTTP/2 CONTINUATION flood in net/http in github.com/traefik/traefik
Traefik affected by HTTP/2 CONTINUATION flood in net/http in github.com/traefik/traefik
Traefik vulnerable to denial of service with Content-length header in github.com/traefik/traefik
Traefik vulnerable to denial of service with Content-length header in github.com/traefik/traefik
Argo CD vulnerable to a Denial of Service via malicious jqPathExpressions in ignoreDifferences in github.com/argoproj/argo-cd
Argo CD vulnerable to a Denial of Service via malicious jqPathExpressions in ignoreDifferences in github.com/argoproj/argo-cd
Consul JWT Auth in L7 Intentions Allow for Mismatched Service Identity and JWT Providers in github.com/hashicorp/consul
Consul JWT Auth in L7 Intentions Allow for Mismatched Service Identity and JWT Providers in github.com/hashicorp/consul
Argo CD's API server does not enforce project sourceNamespaces in github.com/argoproj/argo-cd
Argo CD's API server does not enforce project sourceNamespaces in github.com/argoproj/argo-cd
Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop
Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop
Buffer Overflow vulnerability in osrg gobgp
Buffer Overflow vulnerability in osrg gobgp
Argo CD vulnerable to a Denial of Service via malicious jqPathExpressions in ignoreDifferences
Argo CD vulnerable to a Denial of Service via malicious jqPathExpressions in ignoreDifferences
Out of memory crash from malicious Helm registry in github.com/argoproj/argo-cd/v2
Out of memory crash from malicious Helm registry in github.com/argoproj/argo-cd/v2
Argo CD's API server does not enforce project sourceNamespaces
Argo CD's API server does not enforce project sourceNamespaces
Traefik affected by HTTP/2 CONTINUATION flood in net/http
Traefik affected by HTTP/2 CONTINUATION flood in net/http
Traefik vulnerable to denial of service with Content-length header
Traefik vulnerable to denial of service with Content-length header
Improper handling of node names in JWT claims assertions in github.com/hashicorp/consul
Improper handling of node names in JWT claims assertions in github.com/hashicorp/consul
ArgoCD's repo server has Uncontrolled Resource Consumption vulnerability
ArgoCD's repo server has Uncontrolled Resource Consumption vulnerability
Memory leak in github.com/golang-fips/openssl/v2 and github.com/microsoft/go-crypto-openssl
Memory leak in github.com/golang-fips/openssl/v2 and github.com/microsoft/go-crypto-openssl
Bypass manifest during application creation in github.com/argoproj/argo-cd/v2
Bypass manifest during application creation in github.com/argoproj/argo-cd/v2
Brute force protection bypass in github.com/argoproj/argo-cd/v2
Brute force protection bypass in github.com/argoproj/argo-cd/v2
Cross-site scripting on application summary component in github.com/argoproj/argo-cd/v2
Cross-site scripting on application summary component in github.com/argoproj/argo-cd/v2
Bypassing Rate Limit and Brute Force Protection Using Cache Overflow
Bypassing Rate Limit and Brute Force Protection Using Cache Overflow
Bypassing Brute Force Protection via Application Crash and In-Memory Data Loss
Bypassing Brute Force Protection via Application Crash and In-Memory Data Loss
Users with `create` but not `override` privileges can perform local sync
Users with `create` but not `override` privileges can perform local sync
Cross-site scripting on application summary component
Cross-site scripting on application summary component
Mattermost leaks details of AD/LDAP groups of a teams
Mattermost leaks details of AD/LDAP groups of a teams
Mattermost denial of service through long emoji value
Mattermost denial of service through long emoji value
Mattermost incorrectly allows access individual posts
Mattermost incorrectly allows access individual posts
Unauthenticated cross-site scripting in github.com/rancher/apiserver
Unauthenticated cross-site scripting in github.com/rancher/apiserver
Email Validation Bypass And Preventing Sign Up From Email's Owner
Email Validation Bypass And Preventing Sign Up From Email's Owner
APM Server vulnerable to Insertion of Sensitive Information into Log File
APM Server vulnerable to Insertion of Sensitive Information into Log File
Rancher API Server Cross-site Scripting Vulnerability
Rancher API Server Cross-site Scripting Vulnerability
github.com/argoproj/argo-cd Cross-Site Request Forgery vulnerability
github.com/argoproj/argo-cd Cross-Site Request Forgery vulnerability
Traefik docker container using 100% CPU
Traefik docker container using 100% CPU
Traefik vulnerable to potential DDoS via ACME HTTPChallenge
Traefik vulnerable to potential DDoS via ACME HTTPChallenge
Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass
Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass
Attacker can cause Kyverno user to unintentionally consume insecure image
Attacker can cause Kyverno user to unintentionally consume insecure image
Calico Typha denial of service vulnerability
Calico Typha denial of service vulnerability
Ingress-nginx path sanitization can be bypassed
Ingress-nginx path sanitization can be bypassed
Ingress nginx annotation injection causes arbitrary command execution
Ingress nginx annotation injection causes arbitrary command execution
Grafana privilege escalation vulnerability
Grafana privilege escalation vulnerability
HashiCorp Vault Improper Input Validation vulnerability
HashiCorp Vault Improper Input Validation vulnerability
Denial of service via deflate compression bomb in github.com/crewjam/saml
Denial of service via deflate compression bomb in github.com/crewjam/saml
Consul JWT Auth in L7 Intentions Allow for Mismatched Service Identity and JWT Providers
Consul JWT Auth in L7 Intentions Allow for Mismatched Service Identity and JWT Providers
Panic when handling invalid request in MITM mode in github.com/elazarl/goproxy
Panic when handling invalid request in MITM mode in github.com/elazarl/goproxy
goproxy Denial of Service vulnerability
goproxy Denial of Service vulnerability
Grafana vulnerable to Authentication Bypass by Spoofing
Grafana vulnerable to Authentication Bypass by Spoofing
Grafana has Broken Access Control in Alert manager: Viewer can send test alerts
Grafana has Broken Access Control in Alert manager: Viewer can send test alerts
Grafana Missing Synchronization vulnerability
Grafana Missing Synchronization vulnerability
Kyverno resource with a deletionTimestamp may allow policy circumvention
Kyverno resource with a deletionTimestamp may allow policy circumvention
Incorrect permissions in github.com/goreleaser/nfpm/v2
Incorrect permissions in github.com/goreleaser/nfpm/v2
Kyverno vulnerable due to usage of insecure cipher
Kyverno vulnerable due to usage of insecure cipher
Ingress-nginx `path` sanitization can be bypassed with newline character
Ingress-nginx `path` sanitization can be bypassed with newline character
nfpm has incorrect default permissions
nfpm has incorrect default permissions
crewjam/saml vulnerable to Denial Of Service Via Deflate Decompression Bomb
crewjam/saml vulnerable to Denial Of Service Via Deflate Decompression Bomb
Consul Server Panic when Ingress and API Gateways Configured with Peering Connections
Consul Server Panic when Ingress and API Gateways Configured with Peering Connections
Grafana vulnerable to Cross-site Scripting
Grafana vulnerable to Cross-site Scripting
Kubernetes apimachinery packages vulnerable to unbounded recursion in JSON or YAML parsing
Kubernetes apimachinery packages vulnerable to unbounded recursion in JSON or YAML parsing
golang.org/x/net/http2/h2c vulnerable to request smuggling attack
golang.org/x/net/http2/h2c vulnerable to request smuggling attack
Request smuggling due to improper request handling in golang.org/x/net/http2/h2c
Request smuggling due to improper request handling in golang.org/x/net/http2/h2c
Traefik may display authorization header in the debug logs
Traefik may display authorization header in the debug logs
Traefik routes exposed with an empty TLSOption
Traefik routes exposed with an empty TLSOption
Missing Authorization in HashiCorp Consul
Missing Authorization in HashiCorp Consul
HashiCorp Consul does not properly validate node or segment names prior to usage in JWT claim assertions
HashiCorp Consul does not properly validate node or segment names prior to usage in JWT claim assertions
Unbounded recursion in JSON parsing in k8s.io/apimachinery
Unbounded recursion in JSON parsing in k8s.io/apimachinery
Improper token validation leading to code execution in Teleport
Improper token validation leading to code execution in Teleport
Type confusion in github.com/docker/distribution
Type confusion in github.com/docker/distribution
Calico vulnerable to pod route hijacking
Calico vulnerable to pod route hijacking
ingress-nginx component for Kubernetes allows file overwrite
ingress-nginx component for Kubernetes allows file overwrite
Kubernetes ingress exposes sensitive information
Kubernetes ingress exposes sensitive information
Improper Input Validation in k8s.io/ingress-nginx
Improper Input Validation in k8s.io/ingress-nginx
Exposure of Sensitive Information to an Unauthorized Actor and Insertion of Sensitive Information Into Sent Data in Calico
Exposure of Sensitive Information to an Unauthorized Actor and Insertion of Sensitive Information Into Sent Data in Calico
Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes
Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes
OCI Manifest Type Confusion Issue
OCI Manifest Type Confusion Issue
Path traversal in Grafana Loki
Path traversal in Grafana Loki
Tooling for Go
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.