Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
590290
AlmaLinux
4150
Alpaquita
7075
Alpine
3875
Android
3113
BellSoft Hardened Containers
248
Bitnami
6186
Chainguard
32464
CRAN
11
crates.io
1885
Debian
50232
Echo
2163
GHC
3
GIT
73413
GitHub Actions
37
Go
5006
Hackage
25
Hex
44
Julia
332
Linux
21743
Mageia
5749
Maven
6043
MinimOS
7859
npm
212688
NuGet
1493
openEuler
5462
openSUSE
10282
OSS-Fuzz
3722
Packagist
4992
Pub
10
PyPI
16841
Red Hat
17583
Rocky Linux
2430
RubyGems
1797
SUSE
17009
SwiftURL
42
Ubuntu
48037
VSCode
14
Wolfi
16232
ID
Packages
Summary
Published
arrow_upward
Attributes
GO-2025-4155
Go/stdlib
Excessive resource consumption when printing error string for host certificate validation in crypto/x509
43 minutes ago
Fix available
GHSA-69jw-4jj8-fcxm
Go/github.com/cloudflare/gokey
gokey allows secret recovery from a seed file without the master password
1 hour ago
Fix available
Severity - 7.1 (High)
GHSA-32fw-gq77-f2f2
Go/github.com/eclipse/paho.mqtt.golang
Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes
9 hours ago
Fix available
Severity - 6.3 (Medium)
GHSA-jrhg-82w2-vvj7
Go/github.com/flipped-aurora/gin-vue-admin
Gin-vue-admin has an arbitrary file deletion vulnerability
18 hours ago
Fix available
Severity - 8.7 (High)
GHSA-p6gj-jc38-x2m7
Go/github.com/mattermost/mattermost/server/v8
Go/github.com/mattermost/mattermost
Mattermost fails to validate user permissions when deleting comments in Boards
21 hours ago
No fix available
Severity - 4.3 (Medium)
GHSA-38pp-6gcp-rqvm
Go/github.com/cilium/cilium
Go/Ciliumgithub.com/cilium/cilium
Cilium with misconfigured toGroups in policies can lead to unrestricted egress traffic
yesterday
Fix available
Severity - 4.0 (Medium)
GHSA-mp6x-97xj-9x62
Go/github.com/mattermost/mattermost/server/v8
Go/github.com/mattermost/mattermost-server
Mattermost fails to to verify the token used during code exchange
5 days ago
Fix available
Severity - 9.9 (Critical)
GHSA-3x39-62h4-f8j6
Go/github.com/mattermost/mattermost/server/v8
Go/github.com/mattermost/mattermost-server
Mattermost fails to properly validate OAuth state tokens during OpenID Connect authentication
5 days ago
Fix available
Severity - 9.9 (Critical)
GHSA-4g87-9x45-cx2h
Go/github.com/mattermost/mattermost/server/v8
Go/github.com/mattermost/mattermost-server
Mattermost fails to sanitize team email addresses
5 days ago
Fix available
Severity - 4.3 (Medium)
GHSA-66jq-2c23-2xh5
Go/github.com/VictoriaMetrics/VictoriaMetrics
VictoriaMetrics' Snappy Decoder DoS Vulnerability is Causing OOM
6 days ago
Fix available
Severity - 2.7 (Low)
GO-2025-4133
Go/github.com/mattermost/mattermost-server
Go/github.com/mattermost/mattermost-server/v5
Go/github.com/mattermost/mattermost-server/v6
Go/github.com/mattermost/mattermost/server/v8
Mattermost allows other users to determine when users had read channels via channel member objects in github.com/mattermost/mattermost-server
25 Nov
Fix available
GO-2025-4138
Go/github.com/esm-dev/esm.sh
esm.sh CDN service has arbitrary file write via tarslip in github.com/esm-dev/esm.sh
25 Nov
Fix available
GO-2025-4139
Go/github.com/esm-dev/esm.sh
esm.sh CDN service has JS Template Literal Injection in CSS-to-JavaScript in github.com/esm-dev/esm.sh
25 Nov
Fix available
GO-2025-4146
Go/github.com/mattermost/mattermost-server
Go/github.com/mattermost/mattermost-server/v5
Mattermost Server is vulnerable to a Denial of Service attack through
`
invite_people
`
command in github.com/mattermost/mattermost-server
25 Nov
Fix available
GO-2025-4147
Go/github.com/mindersec/minder
Minder does not sandbox http.send in Rego programs in github.com/mindersec/minder
25 Nov
Fix available
GO-2025-4149
Go/github.com/google/osv-scalibr
OSV-SCALIBR has NULL Pointer Dereference in github.com/google/osv-scalibr
25 Nov
Fix available
Load more...
Go - OSV