Vulnerabilities > Quic GO Project

DATE CVE VULNERABILITY TITLE RISK
2024-01-10 CVE-2023-49295 Resource Exhaustion vulnerability in Quic-Go Project Quic-Go
quic-go is an implementation of the QUIC protocol (RFC 9000, RFC 9001, RFC 9002) in Go.
network
low complexity
quic-go-project CWE-400
6.5
2023-10-31 CVE-2023-46239 NULL Pointer Dereference vulnerability in Quic-Go Project Quic-Go 0.37.0/0.37.1/0.37.2
quic-go is an implementation of the QUIC protocol in Go.
network
low complexity
quic-go-project CWE-476
7.5
2022-07-06 CVE-2022-30591 Resource Exhaustion vulnerability in Quic-Go Project Quic-Go
quic-go through 0.27.0 allows remote attackers to cause a denial of service (CPU consumption) via a Slowloris variant in which incomplete QUIC or HTTP/3 requests are sent.
network
low complexity
quic-go-project CWE-400
7.5