Vulnerability Library

ID
Packages
Summary
Affected versions
Published
Fix
GO-2024-2833
  • Go/github.com/octo-sts/app
Denial of service in github.com/octo-sts/app
  • See details.
2024-05-13T13:13:22Z Fix available
GO-2024-2638
  • Go/github.com/cosmos/cosmos-sdk
ValidateVoteExtensions function in Cosmos SDK may allow incorrect voting power assumptions in github.com/cosmos/cosmos-sdk
  • See details.
2024-05-10T21:39:27Z Fix available
GO-2024-2800
  • Go/github.com/hashicorp/go-getter
Argument injection when fetching remote default Git branches in github.com/hashicorp/go-getter
  • See details.
2024-05-10T21:39:25Z Fix available
GO-2024-2821
  • Go/github.com/stacklok/minder
Denial of Service from untrusted requests in github.com/stacklok/minder
  • See details.
2024-05-10T20:07:31Z Fix available
GO-2024-2826
  • Go/vitess.io/vitess
Denial of service attack by triggering unbounded memory usage in vitess.io/vitess
  • See details.
2024-05-10T20:07:17Z Fix available
GHSA-jcqq-g64v-gcm7
  • Go/github.com/spacemeshos/go-spacemesh
  • Go/github.com/spacemeshos/api
Previous ATX is not checked to be the newest valid ATX by Smesher when validating incoming ATX
  • See details.
2024-05-10T15:33:40Z Fix available
GO-2024-2721
  • Go/github.com/tiagorlampert/CHAOS
Cross site scripting in github.com/tiagorlampert/CHAOS
  • See details.
2024-05-09T22:01:10Z No fix available
GO-2024-2822
  • Go/github.com/tiagorlampert/CHAOS
Arbitrary code execution in github.com/tiagorlampert/CHAOS
  • See details.
2024-05-09T16:51:38Z Fix available
GHSA-f8ch-w75v-c847
  • Go/github.com/1Panel-dev/1Panel
1Panel arbitrary file write vulnerability
  • See details.
2024-05-09T15:14:24Z Fix available
GO-2024-2819
  • Go/github.com/ethereum/go-ethereum
Denial of Service in github.com/ethereum/go-ethereum
  • See details.
2024-05-08T23:23:56Z Fix available
GO-2024-2818
  • Go/github.com/btcsuite/btcd
Consensus failures in github.com/btcsuite/btcd
  • See details.
2024-05-08T17:51:16Z Fix available
GO-2024-2825
  • Go/toolchain
Arbitrary code execution during build on Darwin in cmd/go
  • See details.
2024-05-08T15:17:04Z Fix available
GHSA-649x-hxfx-57j2
  • Go/github.com/vitessio/vitess
  • Go/vitess.io/vitess
Vitess vulnerable to infinite memory consumption and vtgate crash
  • See details.
2024-05-08T14:32:32Z Fix available
GO-2024-2824
  • Go/stdlib
Malformed DNS message can cause infinite loop in net
  • See details.
2024-05-07T22:33:51Z Fix available
GHSA-xfjj-f699-rc79
  • Go/github.com/tiagorlampert/CHAOS
tiagorlampert CHAOS vulnerable to arbitrary code execution
  • See details.
2024-05-07T15:30:37Z Fix available
GHSA-9c5w-9q3f-3hv7
  • Go/github.com/stacklok/minder
Minder's GitHub Webhook Handler vulnerable to DoS from un-validated requests
  • See details.
2024-05-07T13:02:42Z Fix available