Known vulnerabilities in golang - page 2

Vendor: OpenAnolis
Software: golang
Software CPE: cpe:2.3:o:openanolis:golang:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 100
Public exploits: 6
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting golang golang is affected by 100 known vulnerabilities: 8 high, 71 medium, 21 low Critical High Medium Low

Vulnerabilities (100)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123445 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-61732
CWE-94 Medium
No
No
1.25.7-1.0.1 03.03.2026 SB2026030334
SB2026030343
SB2026030375
and 25 more
#VU123129 - Improper Certificate Validation
CVE-2025-68121
CWE-295 High
No
No
1.24.13-1, 1.25.7-1.0.1 23.02.2026 SB2026022333
SB2026030334
SB2026030343
and 112 more
#VU119236 - Improper Certificate Validation
CVE-2025-61727
CWE-295 Low
No
No
1.24.11-1 06.12.2025 SB2025120604
SB20251210172
SB20251210173
and 21 more
#VU119235 - Resource exhaustion
CVE-2025-61729
CWE-400 Medium
No
No
1.24.11-1, 1.25.5-1.0.1 06.12.2025 SB2025120604
SB20251210172
SB20251210173
and 146 more
#VU118190 - Resource exhaustion
CVE-2025-58183
CWE-400 Medium
No
No
1.24.8-1, 1.25.3-2.0.2 07.11.2025 SB2025110705
SB2025110725
SB2025110726
and 177 more
#VU118189 - Improper input validation
CVE-2025-58188
CWE-20 Medium
No
No
1.24.8-1 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 110 more
#VU118187 - Resource exhaustion
CVE-2025-58185
CWE-400 Medium
No
No
1.24.0-12 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 112 more
#VU118184 - Resource exhaustion
CVE-2025-61723
CWE-400 Medium
No
No
1.24.0-12 07.11.2025 SB2025110705
SB2025110716
SB2025110717
and 118 more
#VU118183 - Improper Encoding or Escaping of Output
CVE-2025-58189
CWE-116 Low
No
No
1.24.0-11 07.11.2025 SB2025110705
SB2025110711
SB2025110712
and 120 more
#VU114341 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-4674
CWE-78 High
No
No
1.24.6-1.0.1 21.08.2025 SB2025082138
SB2025082164
SB2025082165
and 19 more
#VU114079 - Improper input validation
CVE-2025-47906
CWE-20 Low
No
No
1.24.0-9, 1.25.3-2.0.2 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 130 more
#VU110253 - Protection Mechanism Failure
CVE-2025-22874
CWE-693 Low
No
No
1.24.0-9 07.06.2025 SB2025060702
SB2025061002
SB2025081114
and 16 more
#VU110251 - Exposure of sensitive information to an unauthorized actor
CVE-2025-4673
CWE-200 Low
No
No
1.24.4-1.0.2, 1.24.8-1 07.06.2025 SB2025060701
SB2025060702
SB2025061002
and 35 more
#VU107019 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-22871
CWE-444 Medium
No
No
1.24.0-9, 1.24.4-1.0.2 05.04.2025 SB2025040507
SB2025040508
SB2025040739
and 109 more
#VU106253 - Improper input validation
CVE-2025-22870
CWE-20 Medium
Available
No
1.24.0-10 30.03.2025 SB2025033001
SB2025033002
SB2025033003
and 106 more
#VU103457 - Improper input validation
CVE-2024-45341
CWE-20 Low
No
No
1.24.4-1.0.2 30.01.2025 SB2025013039
SB2025013043
SB2025013044
and 23 more
#VU103455 - Exposure of sensitive information to an unauthorized actor
CVE-2024-45336
CWE-200 Low
No
No
1.24.4-1.0.2 30.01.2025 SB2025013039
SB2025013043
SB2025013044
and 38 more
#VU97217 - Resource exhaustion
CVE-2024-34158
CWE-400 Medium
No
No
1.21.13-2.0.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 76 more
#VU97216 - Resource exhaustion
CVE-2024-34156
CWE-400 Medium
No
No
1.21.13-2.0.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 143 more
#VU97215 - Resource exhaustion
CVE-2024-34155
CWE-400 Medium
No
No
1.21.13-2.0.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 81 more


Showing elements 21 - 40 out of 100