Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.5
CVE-2026-56864
- EPSS 0.12%
- Veröffentlicht 13.08.2026 21:58:53
- Zuletzt bearbeitet 03.09.2026 16:37:52
A malicious GOSUMDB was capable of serving arbitrary module content not contained within the transparency log. This attack allows for a coordinating GOPROXY and GOSUMDB to serve a client malicious module content that cannot be detected by evaluating ...
8.4
CVE-2026-56865
- EPSS 0.12%
- Veröffentlicht 13.08.2026 21:58:53
- Zuletzt bearbeitet 03.09.2026 16:37:52
A malicious GOPROXY was previously capable of forging up to two sumdb tiles that allow for a requested module to bypass the GOSUMDB check and persist attacker-controlled module content to a local Go module cache. This attack allows for a malicious GO...
5.4
CVE-2025-68120
- EPSS 0.44%
- Veröffentlicht 29.12.2025 23:46:52
- Zuletzt bearbeitet 01.10.2026 16:10:00
To prevent unexpected untrusted code execution, the Visual Studio Code Go extension is now disabled in Restricted Mode.
1