Known vulnerabilities in GoLand
Vendor:
JetBrains s.r.o.
Software:
GoLand
Software CPE:
cpe:2.3:a:jetbrains_s.r.o.:goland:*:*:*:*:*:*:*:*
Website:
https://www.jetbrains.com/
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
2026.2.2.1
2024.1.3
2023.3.7
2023.2.7
2023.1.6
2025.1
2026.2 RC
2026.2 EAP 8
2026.2 EAP 7
2026.2 EAP 6
2026.2 EAP 5
2026.2 EAP 4
2026.2 EAP 3
2026.2 EAP 2
2026.2 EAP 1
2026.2 Beta
2026.1 RC
2026.1 EAP 7
2026.1 EAP 6
2026.1 EAP 5
2026.1 EAP 4
2026.1 EAP 3
2026.1 EAP 2
2026.1 EAP 1
2026.1 Beta
2025.3 RC
2025.3 EAP 8
2025.3 EAP 7
2025.3 EAP 6
2025.3 EAP 5
2025.3 EAP 4
2025.3 EAP 3
2025.3 EAP 2
2025.3 EAP 1
2025.3 Beta
2025.2 RC
2025.2 EAP 7
2025.2 EAP 6
2025.2 EAP 5
2025.2 EAP 4
2025.2 EAP 3
2025.2 Beta
2026.2.0.1
2026.2
2026.1.4
2026.1.3
2026.1.2
2026.1.1
2026.1
2025.3.5.1
2025.3.5
2025.3.4.1
2025.3.4
2025.3.3
2025.3.2
2025.3.1.1
2025.3.1
2025.3
2025.2.6.2
2025.2.6.1
2025.2.6
2025.2.5
2025.2.4
2025.2.3
2025.2.2
2025.2.1.2
2025.2.1.1
2025.2.1
2025.2.0.1
2025.2
2018.1
2017.3.5
2017.3.4
2017.3.3
2017.3.2
2017.3.1
2017.3
2017.2
2017.1
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU147337 - Missing Authentication for Critical Function CVE-2026-86506 |
CWE-306 | Medium | 2026.2.2.1 | 07.09.2026 |
SB20260907138 |
||
| #VU143850 - Improper Control of Generation of Code ('Code Injection') CVE-2026-64803 |
CWE-94 | High | 2026.2 | 17.08.2026 |
SB20260817101 |
||
| #VU143849 - Improper Control of Generation of Code ('Code Injection') CVE-2026-64802 |
CWE-94 | High | 2026.2 | 17.08.2026 |
SB20260817101 |
||
| #VU143848 - Information Exposure Through Log Files CVE-2026-64800 |
CWE-532 | Low | 2026.2 | 17.08.2026 |
SB20260817101 |
||
| #VU143829 - External Control of File Name or Path CVE-2026-53915 |
CWE-73 | High | 2026.1.3 | 17.08.2026 |
SB2026081792 |
||
| #VU143888 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2025-29932 |
CWE-611 | Low | 2025.1 | 25.03.2025 |
SB2025032582 |