Vulnerabilities > Golang > GO > 1.18.4

DATE CVE VULNERABILITY TITLE RISK
2022-10-14 CVE-2022-41715 Unspecified vulnerability in Golang GO
Programs which compile regular expressions from untrusted sources may be vulnerable to memory exhaustion or denial of service.
network
low complexity
golang
7.5
2022-10-14 CVE-2022-2879 Allocation of Resources Without Limits or Throttling vulnerability in Golang GO
Reader.Read does not set a limit on the maximum size of file headers.
network
low complexity
golang CWE-770
7.5
2022-10-14 CVE-2022-2880 HTTP Request Smuggling vulnerability in Golang GO
Requests forwarded by ReverseProxy include the raw query parameters from the inbound request, including unparsable parameters rejected by net/http.
network
low complexity
golang CWE-444
7.5
2022-09-06 CVE-2022-27664 In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.
network
low complexity
golang fedoraproject
7.5
2022-08-10 CVE-2022-32189 Unspecified vulnerability in Golang GO
A too-short encoded message can cause a panic in Float.GobDecode and Rat GobDecode in math/big in Go before 1.17.13 and 1.18.5, potentially allowing a denial of service.
network
low complexity
golang
7.5