Vulnerabilities > Golang > Networking > 0.4.0

DATE CVE VULNERABILITY TITLE RISK
2023-10-10 CVE-2023-44487 Resource Exhaustion vulnerability in multiple products
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
7.5
2023-08-02 CVE-2023-3978 Cross-site Scripting vulnerability in Golang Networking
Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be.
network
low complexity
golang CWE-79
6.1