Vulnerabilidades en Golang
4 resultadosAnálisis Vexday
Go apresenta 3 vulnerabilidades críticas registradas na base Vexday, nenhuma delas atualmente explorada em ataques ativos ou revelada recentemente. A fraqueza dominante (CWE-115) aponta para questões de codificação, mas o perfil geral indica um risco contido e sem pressão imediata de exploração no ecossistema.
CVE-2020-29509CRITICALThe encoding/xml package in Go (all versions) does not correctly preserve the semantics of attribute namespace prefixes during tokenization EPSS 2.1%CVE-2020-29510CRITICALThe encoding/xml package in Go versions 1.15 and earlier does not correctly preserve the semantics of directives during tokenization round-tEPSS 2.1%CVE-2020-29511CRITICALThe encoding/xml package in Go (all versions) does not correctly preserve the semantics of element namespace prefixes during tokenization roEPSS 2.0%CVE-2018-1002207—mholt/archiver golang package before e4ef56d48eb029648b0e895bb0b6a393ef0829c3 is vulnerable to directory traversal, allowing attackers to wrEPSS 1.9%