GoBGP vulnerable to a denial of service via the NEXT_HOP path attribute in github.com/osrg/gobgp
{ "url": "https://pkg.go.dev/vuln/GO-2026-4736", "review_status": "REVIEWED" }
"https://vuln.go.dev/ID/GO-2026-4736.json"
{ "imports": [ { "symbols": [ "fsmHandler.recvMessageloop" ], "path": "github.com/osrg/gobgp/v4/pkg/server" } ] }