Direct Vulnerabilities

Known vulnerabilities in the golang package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
HTTP Request Smuggling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Improper Validation of Unsafe Equivalence in Input

*
  • H
Improper Restriction of Names for Files and Other Resources

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Excessive Platform Resource Consumption within a Loop

*
  • M
Cross-site Scripting (XSS)

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Expected Behavior Violation

*
  • M
Compiler Optimization Removal or Modification of Security-critical Code

*
  • M
Improper Validation of Specified Index, Position, or Offset in Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
CVE-2025-68121

<0:1.25.7-1.el9_7
  • H
CVE-2025-61732

<0:1.25.7-1.el9_7
  • M
NULL Pointer Dereference

*
  • H
Improper Validation of Syntactic Correctness of Input

<0:1.25.8-1.el9_7
  • L
Directory Traversal

*
  • M
Cross-site Scripting (XSS)

*
  • L
Improper Certificate Validation

*
  • H
Improper Certificate Validation

*
  • M
OS Command Injection

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Arbitrary Argument Injection

<0:1.25.8-1.el9_7
  • M
Directory Traversal

*
  • H
Allocation of Resources Without Limits or Throttling

<0:1.25.7-1.el9_7
  • H
Allocation of Resources Without Limits or Throttling

<0:1.25.7-1.el9_7
  • H
Excessive Platform Resource Consumption within a Loop

<0:1.25.5-2.el9_7
  • M
Improper Certificate Validation

*
  • L
CVE-2025-58186

*
  • M
Reachable Assertion

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Allocation of Resources Without Limits or Throttling

<0:1.25.3-1.el9_7
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Output Neutralization for Logs

*
  • H
Race Condition

<0:1.24.6-1.el9_6
  • M
Expected Behavior Violation

*
  • H
Expected Behavior Violation

<0:1.24.6-1.el9_6
  • H
Arbitrary Code Injection

<0:1.24.6-1.el9_6
  • M
CVE-2025-4673

<0:1.24.4-1.el9_6
  • M
Improper Certificate Validation

<0:1.24.4-1.el9_6
  • M
HTTP Request Smuggling

<0:1.23.9-1.el9_6
  • M
Improper Input Validation

*
  • H
Information Exposure

<0:1.23.6-2.el9_5
  • H
Information Exposure

<0:1.23.6-2.el9_5
  • H
Improper Verification of Cryptographic Signature

<0:1.23.6-2.el9_5
  • M
Use of Uninitialized Variable

<0:1.21.13-4.el9_4
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.21.13-3.el9_4
  • H
Uncontrolled Recursion

<0:1.23.6-2.el9_5
  • H
Uncontrolled Recursion

<0:1.21.13-3.el9_4
  • H
Improper Input Validation

<0:1.21.13-3.el9_4
  • M
Improper Input Validation

<0:1.21.11-1.el9_4
  • M
Misinterpretation of Input

<0:1.21.11-1.el9_4
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.21.10-1.el9_4
  • H
Resource Exhaustion

<0:1.21.9-2.el9_4
  • H
Memory Leak

<0:1.20.12-2.el9_3
  • H
Arbitrary Code Injection

<0:1.21.9-2.el9_4
  • H
Improper Certificate Validation

<0:1.21.9-2.el9_4
  • H
Misinterpretation of Input

<0:1.21.9-2.el9_4
  • H
Improper Input Validation

<0:1.21.9-2.el9_4
  • H
Information Exposure

<0:1.21.9-2.el9_4
  • M
Information Exposure

*
  • M
Resource Exhaustion

<0:1.20.12-1.el9_3
  • M
Protection Mechanism Failure

<0:1.20.12-1.el9_3
  • H
Resource Exhaustion

<0:1.19.13-1.el9_2
  • H
Resource Exhaustion

<0:1.19.13-1.el9_2
  • M
Arbitrary Code Injection

*
  • M
Buffer Access with Incorrect Length Value

<0:1.20.10-1.el9_3
  • M
Cross-site Scripting (XSS)

<0:1.20.10-1.el9_3
  • M
Allocation of Resources Without Limits or Throttling

<0:1.20.10-1.el9_3
  • M
Cross-site Scripting (XSS)

<0:1.20.10-1.el9_3
  • H
Resource Exhaustion

<0:1.19.13-1.el9_2
  • H
HTTP Response Splitting

<0:1.19.13-1.el9_2
  • H
Incorrect Calculation

<0:1.19.9-2.el9_2
  • C
Arbitrary Code Injection

<0:1.19.10-1.el9_2
  • C
Arbitrary Code Injection

<0:1.19.10-1.el9_2
  • C
Arbitrary Code Injection

<0:1.19.10-1.el9_2
  • C
Exposure of Resource to Wrong Sphere

<0:1.19.10-1.el9_2
  • H
Improper Handling of Unicode Encoding

<0:1.19.9-2.el9_2
  • H
Improper Handling of Unicode Encoding

<0:1.19.9-2.el9_2
  • H
Improper Handling of Unicode Encoding

<0:1.19.9-2.el9_2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.19.9-2.el9_2
  • H
Resource Exhaustion

<0:1.19.9-2.el9_2
  • H
Arbitrary Code Injection

<0:1.19.9-2.el9_2
  • H
Resource Exhaustion

<0:1.19.9-2.el9_2
  • M
Resource Exhaustion

<0:1.19.6-2.el9_2
  • M
Resource Exhaustion

<0:1.19.6-2.el9_2
  • M
Resource Exhaustion

<0:1.19.6-2.el9_2
  • M
Allocation of Resources Without Limits or Throttling

<0:1.18.9-1.el9_1
  • M
CVE-2022-41715

<0:1.18.9-1.el9_1
  • M
Allocation of Resources Without Limits or Throttling

<0:1.18.9-1.el9_1
  • M
HTTP Request Smuggling

<0:1.18.9-1.el9_1
  • M
Resource Exhaustion

<0:1.18.9-1.el9_1
  • M
Resource Exhaustion

<0:1.18.9-1.el9_1
  • H
Information Exposure

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
Improperly Controlled Sequential Memory Allocation

<0:1.17.12-1.el9_0
  • H
HTTP Request Smuggling

<0:1.17.12-1.el9_0
  • H
Insufficient Entropy

<0:1.17.12-1.el9_0
  • H
Improperly Implemented Security Check for Standard

<0:1.17.12-1.el9_0
  • H
Integer Overflow or Wraparound

<0:1.17.12-1.el9_0
  • H
Buffer Overflow

<0:1.17.12-1.el9_0
  • H
Resource Exhaustion

<0:1.17.12-1.el9_0
  • M
Inappropriate Encoding for Output Context

*
  • M
Arbitrary Code Injection

*