Known vulnerabilities in Go programming language - page 9

Vendor: Google
Software CPE: cpe:2.3:a:google:golang:*:*:*:*:*:*:*:*
Total vulnerabilities: 185
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Go programming language Go programming language is affected by 185 known vulnerabilities: 17 high, 132 medium, 36 low Critical High Medium Low

Vulnerabilities (185)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48480 - Improper input validation
CVE-2020-28362
CWE-20 Medium
No
No
1.14.12, 1.15.5 17.11.2020 SB2020111715
SB2020111716
SB2020111225
and 30 more
#VU48479 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-28367
CWE-94 High
No
No
1.14.12, 1.15.5 17.11.2020 SB2020111715
SB2020111716
SB2020111227
and 17 more
#VU48478 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-28366
CWE-94 High
No
No
1.14.12, 1.15.5 17.11.2020 SB2020111715
SB2020111716
SB2020111226
and 17 more
#VU46580 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-24553
CWE-79 Low
No
No
1.14.8 02.09.2020 SB2020090217
SB2020091020
SB2020091021
and 20 more
#VU45699 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-16845
CWE-835 Medium
No
No
1.13.15, 1.14.7 14.08.2020 SB2020081403
SB2020081404
SB2020081405
and 44 more
#VU31891 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-15586
CWE-362 Medium
No
No
1.13.13, 1.14.5 27.07.2020 SB2020072734
SB2020072735
SB2020072749
and 37 more
#VU31890 - Improper Certificate Validation
CVE-2020-14039
CWE-295 Medium
No
No
1.13.13, 1.14.5 27.07.2020 SB2020072734
SB2020072735
SB2020072749
and 7 more
#VU29673 - Improper Certificate Validation
CVE-2020-7919
CWE-295 Medium
No
No
1.13.7 16.03.2020 SB2020031611
SB2020020725
SB2020020726
and 15 more
#VU30372 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2015-5741
CWE-444 High
No
No
1.4.3 08.02.2020 SB2020020804
SB2015092110
SB2015082511
and 11 more
#VU22020 - Improper input validation
CVE-2019-17596
CWE-20 Medium
No
No
1.12.11, 1.13.3 21.10.2019 SB2019102201
SB2019102202
SB2019102107
and 14 more
#VU21784 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2015-5740
CWE-444 Medium
No
No
1.4.3 15.10.2019 SB2017101809
SB2015092109
SB2015082511
and 11 more
#VU21783 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2015-5739
CWE-444 Medium
No
No
1.4.3 15.10.2019 SB2017101809
SB2015092108
SB2015082511
and 14 more
#VU21409 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-16276
CWE-444 Medium
No
No
1.12.10, 1.13.1 29.09.2019 SB2019092910
SB2019092911
SB2019111801
and 13 more
#VU20301 - Improper input validation
CVE-2019-14809
CWE-20 Low
No
No
1.11.13, 1.12.8 19.08.2019 SB2019081902
SB2019082502
SB2019082504
and 13 more
#VU36076 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-9741
CWE-93 Medium
No
No
- 13.03.2019 SB2019031320
SB2019072514
SB2019053017
and 2 more
#VU17245 - Resource exhaustion
CVE-2019-6486
CWE-400 Low
No
No
- 24.01.2019 SB2019012802
SB2019012425
SB2019012426
and 12 more
#VU16546 - Improper input validation
CVE-2018-16875
CWE-20 Low
No
No
1.10.6, 1.11.3 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more
#VU16545 - Command injection
CVE-2018-16873
CWE-77 High
No
No
1.10.6, 1.11.3 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more
#VU16544 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-16874
CWE-22 High
No
No
1.10.6, 1.11.3 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more
#VU11851 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2018-7187
CWE-78 High
No
No
- 17.04.2018 SB2018041702
SB2018062501
SB2018062503
and 7 more


Showing elements 161 - 180 out of 185