Skip to main content

Vendor archive

go CVEs

Beta · best-effort

6 CVEs tagged to vendor go0 Critical, 3 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-58190

Published Feb 5, 2026

The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides spe…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-47911

Published Feb 5, 2026

The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-68120

Published Dec 30, 2025

To prevent unexpected untrusted code execution, the Visual Studio Code Go extension is now disabled in Restricted Mode.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-47913

Published Nov 13, 2025

SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the client process.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22869

Published Feb 26, 2025

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pendin…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22868

Published Feb 26, 2025

An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1