Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
586563
AlmaLinux
4158
Alpaquita
7086
Alpine
3913
Android
2912
BellSoft Hardened Containers
253
Bitnami
6217
Chainguard
28737
CRAN
11
crates.io
1887
Debian
50347
Echo
2190
GHC
3
GIT
73547
GitHub Actions
37
Go
5024
Hackage
25
Hex
44
Julia
332
Linux
21799
Mageia
5757
Maven
6048
MinimOS
7966
npm
213034
NuGet
1494
openEuler
5486
openSUSE
10280
OSS-Fuzz
3671
Packagist
5501
Pub
10
PyPI
17318
Red Hat
17603
Rocky Linux
2432
RubyGems
1797
SUSE
17025
SwiftURL
42
Ubuntu
48111
VSCode
14
Wolfi
14452
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-4f99-4q7p-p3gh
Go/github.com/sirupsen/logrus
Logrus is vulnerable to DoS when using Entry.Writer()
18 hours ago
Fix available
Severity - 8.7 (High)
GHSA-h8cp-697h-8c8p
Go/github.com/smallstep/certificates
Step CA Has Authorization Bypass in ACME and SCEP Provisioners
yesterday
Fix available
Severity - 10.0 (Critical)
GHSA-jf75-p25m-pw74
Go/github.com/coder/coder/v2
Coder logs sensitive objects unsanitized
yesterday
Fix available
Severity - 7.8 (High)
GHSA-j7c9-79x7-8hpr
Go/github.com/smallstep/certificates
step-ca Has Improper Authorization Check for SSH Certificate Revocation
yesterday
Fix available
Severity - 5.0 (Medium)
GHSA-46gc-mwh4-cc5r
Go/github.com/docker/mcp-gateway
Docker MCP Plugin and Docker MCP Gateway have DNS Rebinding vulnerability when running in sse or streaming mode
yesterday
Fix available
Severity - 7.3 (High)
GHSA-j3rw-fx6g-q46j
Go/github.com/apptainer/apptainer
Apptainer ineffectively applies selinux and apparmor --security options
2 days ago
Fix available
Severity - 4.5 (Medium)
GHSA-wwrx-w7c9-rf87
Go/github.com/sylabs/singularity/v4
Singluarity ineffectively applies selinux / apparmor LSM process labels
2 days ago
Fix available
Severity - 4.5 (Medium)
GO-2025-4175
Go/stdlib
Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509
2 days ago
Fix available
GO-2025-4163
Go/github.com/free5gc/nssf
NSSF panic due to nil pointer dereference when expiry field is omitted in NSSAIAvailability POST in github.com/free5gc/nssf
2 days ago
Fix available
GO-2025-4164
Go/github.com/free5gc/pcf
Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API in github.com/free5gc/pcf
2 days ago
Fix available
GO-2025-4171
Go/github.com/flipped-aurora/gin-vue-admin
Gin-vue-admin has an arbitrary file deletion vulnerability in github.com/flipped-aurora/gin-vue-admin
2 days ago
Fix available
GO-2025-4172
Go/github.com/mattermost/mattermost
Go/github.com/mattermost/mattermost-server
Go/github.com/mattermost/mattermost-server/v5
Go/github.com/mattermost/mattermost-server/v6
Go/github.com/mattermost/mattermost/server/v8
Mattermost fails to validate user permissions when deleting comments in Boards in github.com/mattermost/mattermost
2 days ago
No fix available
GO-2025-4174
Go/github.com/cloudflare/gokey
gokey allows secret recovery from a seed file without the master password in github.com/cloudflare/gokey
2 days ago
Fix available
GO-2025-4155
Go/stdlib
Excessive resource consumption when printing error string for host certificate validation in crypto/x509
2 days ago
Fix available
GHSA-69jw-4jj8-fcxm
Go/github.com/cloudflare/gokey
gokey allows secret recovery from a seed file without the master password
2 days ago
Fix available
Severity - 7.1 (High)
GHSA-58w6-w55x-6wq8
Go/github.com/mattermost/mattermost/server/v8
Go/github.com/mattermost/mattermost
Mattermost fails to validate user permissions in Boards
3 days ago
Fix available
Severity - 3.1 (Low)
Load more...
Go - OSV