CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go

Information published.


CVE-2026-39817 Invoking "go tool pack" does not sanitize output paths in cmd/go

Information published.


CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Information published.


CVE-2026-33811 Crash when handling long CNAME response in net

Information published.


CVE-2026-41889 pgx: SQL Injection via placeholder confusion with dollar quoted string literals

Information published.


CVE-2026-33079 Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titles

Information published.


CVE-2026-37457

Information published.


CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow

Information published.


CVE-2026-42798

Information published.


CVE-2026-41080

Information published.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge