VendorsGolanggo1.26.0
Vulnerabilities

Golang Go 1.26.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2025-68121
Unexpected session resumption in crypto/tls
Published 2026-02-05 · Modified
10.0EPSS 0.009
CVE-2026-25679
Incorrect parsing of IPv6 host literals in net/url
Published 2026-03-06 · Modified
7.5EPSS 0.008
CVE-2026-27137
Incorrect enforcement of email constraints in crypto/x509
Published 2026-03-06 · Modified
7.5EPSS 0.007
CVE-2026-27142
URLs in meta content attribute actions are not escaped in html/template
Published 2026-03-06 · Analyzed
6.1EPSS 0.003
CVE-2026-27138
Panic in name constraint checking for malformed certificates in crypto/x509
Published 2026-03-06 · Analyzed
5.9EPSS 0.003
CVE-2026-27139
FileInfo can escape from a Root in os
Published 2026-03-06 · Analyzed
2.5EPSS 0.001