📦 Go Tuf

by Theupdateframework

🔍 What is Go Tuf?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-29173

HIGH CVSS 8.0 May 5, 2022

This vulnerability in go-tuf allows attackers to perform rollback attacks, causing clients to install older, potentially vulnerable software versions instead of current secure updates. It affects all ...

CVE-2026-23991

MEDIUM CVSS 5.9 Jan 22, 2026

A denial-of-service vulnerability in go-tuf allows a compromised repository, mirror, or cache to crash client applications by sending malformed TUF metadata. This affects all systems using go-tuf vers...

CVE-2026-23992

MEDIUM CVSS 5.9 Jan 22, 2026

This vulnerability in go-tuf allows a compromised or misconfigured TUF repository to set signature verification thresholds to zero, effectively disabling integrity checks. This enables unauthorized mo...