golang-misc vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the golang-misc package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Certificate Validation

<0:1.13.4-1.57.amzn1
  • H
Cross-site Scripting (XSS)

<0:1.20.8-1.47.amzn1
  • H
Arbitrary Code Injection

<0:1.20.8-1.47.amzn1
  • H
Directory Traversal

<0:1.20.8-1.47.amzn1
  • M
CVE-2023-45284

<0:1.20.12-1.49.amzn1
  • M
Directory Traversal

<0:1.20.12-1.49.amzn1
  • H
Resource Exhaustion

<0:1.20.8-1.47.amzn1
  • H
Improper Handling of Unicode Encoding

<0:1.20.8-1.47.amzn1
  • H
Allocation of Resources Without Limits or Throttling

<0:1.20.8-1.47.amzn1
  • H
Arbitrary Code Injection

<0:1.20.8-1.47.amzn1
  • H
Incorrect Calculation

<0:1.20.8-1.47.amzn1
  • H
Arbitrary Code Injection

<0:1.20.8-1.47.amzn1
  • H
Improper Handling of Unicode Encoding

<0:1.20.8-1.47.amzn1
  • M
Resource Exhaustion

<0:1.20.12-1.49.amzn1
  • H
Resource Exhaustion

<0:1.20.8-1.47.amzn1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.20.8-1.47.amzn1
  • H
Improper Input Validation

<0:1.16.15-1.37.amzn1
  • H
Integer Overflow or Wraparound

<0:1.18.6-1.42.amzn1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.18.6-1.42.amzn1
  • H
Improper Input Validation

<0:1.18.6-1.42.amzn1
  • H
Incorrect Authorization

<0:1.18.6-1.42.amzn1
  • H
Improper Input Validation

<0:1.18.6-1.42.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.42.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.42.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.42.amzn1
  • H
Unchecked Return Value

<0:1.18.6-1.42.amzn1
  • H
Resource Exhaustion

<0:1.20.10-1.48.amzn1
  • H
Resource Exhaustion

<0:1.20.10-1.48.amzn1
  • H
Arbitrary Code Injection

<0:1.20.10-1.48.amzn1
  • H
Resource Exhaustion

<0:1.20.8-1.47.amzn1
  • H
HTTP Response Splitting

<0:1.20.8-1.47.amzn1
  • H
Exposure of Resource to Wrong Sphere

<0:1.20.8-1.47.amzn1
  • H
Arbitrary Code Injection

<0:1.18.6-1.45.amzn1
  • H
Improper Handling of Unicode Encoding

<0:1.18.6-1.44.amzn1
  • H
Improper Handling of Unicode Encoding

<0:1.18.6-1.44.amzn1
  • H
Improper Handling of Unicode Encoding

<0:1.18.6-1.44.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.18.6-1.43.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Arbitrary Code Injection

<0:1.18.6-1.43.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.18.6-1.43.amzn1
  • H
Directory Traversal

<0:1.18.6-1.43.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.43.amzn1
  • H
Incorrect Calculation

<0:1.18.6-1.43.amzn1
  • H
Allocation of Resources Without Limits or Throttling

<0:1.18.6-1.43.amzn1
  • H
Arbitrary Code Injection

<0:1.18.6-1.43.amzn1
  • M
Integer Overflow or Wraparound

<0:1.16.15-1.38.amzn1
  • M
Unchecked Return Value

<0:1.16.15-1.38.amzn1
  • M
Incorrect Authorization

<0:1.16.15-1.38.amzn1
  • H
Resource Exhaustion

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Use of a Broken or Risky Cryptographic Algorithm

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Information Exposure

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Insufficient Entropy

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Integer Overflow or Wraparound

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Improper Privilege Management

<0:1.18.6-1.42.amzn1
  • H
Authorization Bypass Through User-Controlled Key

<0:1.18.6-1.42.amzn1
  • H
HTTP Request Smuggling

<0:1.18.6-1.42.amzn1
  • H
Buffer Overflow

<0:1.18.6-1.42.amzn1
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.18.6-1.42.amzn1
  • H
Improper Input Validation

<0:1.16.15-1.37.amzn1
  • H
Resource Exhaustion

<0:1.16.15-1.37.amzn1
  • H
Out-of-Bounds

<0:1.16.15-1.37.amzn1
  • H
Information Exposure

<0:1.16.15-1.37.amzn1
  • H
Improper Input Validation

<0:1.16.15-1.37.amzn1
  • M
Race Condition

<0:1.15.15-1.71.amzn1
  • M
Missing Authorization

<0:1.15.14-1.69.amzn1
  • M
Uncontrolled Recursion

<0:1.15.12-1.67.amzn1
  • M
Improper Certificate Validation

<0:1.15.14-1.69.amzn1
  • M
CVE-2021-33198

<0:1.15.14-1.69.amzn1
  • M
Improper Certificate Validation

<0:1.15.5-1.65.amzn1
  • M
Arbitrary Code Injection

<0:1.15.5-1.65.amzn1
  • M
Arbitrary Argument Injection

<0:1.15.5-1.65.amzn1
  • M
Cross-site Scripting (XSS)

<0:1.15.3-1.63.amzn1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.13.15-1.59.amzn1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.13.15-1.59.amzn1
  • M
Race Condition

<0:1.13.14-1.58.amzn1
  • M
HTTP Request Smuggling

<0:1.13.4-1.57.amzn1
  • M
HTTP Request Smuggling

<0:1.12.8-1.52.amzn1
  • H
Resource Exhaustion

<0:1.12.8-1.51.amzn1
  • H
Allocation of Resources Without Limits or Throttling

<0:1.12.8-1.51.amzn1
  • H
CVE-2019-14809

<0:1.12.8-1.51.amzn1
  • M
CRLF Injection

<0:1.12.5-1.50.amzn1
  • M
Allocation of Resources Without Limits or Throttling

<0:1.10.6-1.48.amzn1
  • H
Improper Certificate Validation

<0:1.10.6-1.47.amzn1
  • H
Improper Input Validation

<0:1.10.6-1.47.amzn1
  • H
Improper Input Validation

<0:1.10.6-1.47.amzn1
  • M
OS Command Injection

<0:1.9.4-2.44.amzn1
  • M
Arbitrary Code Injection

<0:1.9.4-2.44.amzn1
  • M
CVE-2017-15041

<0:1.8.4-1.41.amzn1
  • M
Cleartext Transmission of Sensitive Information

<0:1.8.4-1.41.amzn1
  • M
Incorrect Calculation

<0:1.7.5-2.39.amzn1
  • M
Improper Access Control

<0:1.5.3-1.22.amzn1
  • M
Improper Input Validation

<0:1.5.3-1.21.amzn1