Go Security Vulnerabilities (CVEs)
Track 6 security vulnerabilities affecting Go products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
CVE-2025-58190 is a denial-of-service vulnerability in Go's html.Parse function that causes infinite parsing loops when processing specially crafted H...
Feb 5, 2026This vulnerability in Go's html.Parse function allows attackers to cause denial of service by providing specially crafted HTML content that triggers q...
Feb 5, 2026The Visual Studio Code Go extension contains a vulnerability that could allow untrusted code execution when opening projects in Restricted Mode. This ...
Dec 30, 2025This vulnerability affects SSH clients that panic and terminate when receiving SSH_AGENT_SUCCESS messages unexpectedly during authentication. It allow...
Nov 13, 2025This vulnerability in Go's parsing logic allows attackers to cause excessive memory consumption by sending malicious malformed tokens. It affects appl...
Feb 26, 2025SSH servers implementing file transfer protocols (like SFTP/SCP) are vulnerable to a resource exhaustion denial-of-service attack. Malicious clients c...
Feb 26, 2025Why Monitor Go Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 6+ known vulnerabilities affecting Go products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Go packages in under 60 seconds. No agents required - completely agentless scanning that works across Go deployments.
Free vulnerability database: Access detailed information about every Go CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Go CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions