Логотип exploitDog
bind:"BDU:2025-09875" OR bind:"CVE-2025-4674"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-09875" OR bind:"CVE-2025-4674"

Количество 23

Количество 23

fstec логотип

BDU:2025-09875

6 месяцев назад

Уязвимость языка программирования Golang, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.6
EPSS: Низкий
redos логотип

ROS-20250808-06

5 месяцев назад

Уязвимость golang

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2025-4674

6 месяцев назад

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2025-4674

6 месяцев назад

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2025-4674

6 месяцев назад

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2025-4674

5 месяцев назад

Unexpected command execution in untrusted VCS repositories in cmd/go

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2025-4674

6 месяцев назад

The go command may execute unexpected commands when operating in untru ...

CVSS3: 8.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02296-1

6 месяцев назад

Security update for go1.23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02295-1

6 месяцев назад

Security update for go1.24

EPSS: Низкий
rocky логотип

RLSA-2025:13941

4 месяца назад

Important: golang security update

EPSS: Низкий
rocky логотип

RLSA-2025:13940

4 месяца назад

Important: go-toolset:rhel8 security update

EPSS: Низкий
rocky логотип

RLSA-2025:13935

4 месяца назад

Important: golang security update

EPSS: Низкий
github логотип

GHSA-wprm-fgrx-xj42

6 месяцев назад

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
EPSS: Низкий
oracle-oval логотип

ELSA-2025-13941

5 месяцев назад

ELSA-2025-13941: golang security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-13940

5 месяцев назад

ELSA-2025-13940: go-toolset:rhel8 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-13935

5 месяцев назад

ELSA-2025-13935: golang security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03161-1

4 месяца назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03115-1

4 месяца назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02924-1

5 месяцев назад

Security update for go1.25

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02837-1

5 месяцев назад

Security update for go1.24-openssl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-09875

Уязвимость языка программирования Golang, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.6
0%
Низкий
6 месяцев назад
redos логотип
ROS-20250808-06

Уязвимость golang

CVSS3: 8.6
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2025-4674

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-4674

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-4674

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-4674

Unexpected command execution in untrusted VCS repositories in cmd/go

CVSS3: 8.6
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-4674

The go command may execute unexpected commands when operating in untru ...

CVSS3: 8.6
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02296-1

Security update for go1.23

0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02295-1

Security update for go1.24

0%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:13941

Important: golang security update

0%
Низкий
4 месяца назад
rocky логотип
RLSA-2025:13940

Important: go-toolset:rhel8 security update

0%
Низкий
4 месяца назад
rocky логотип
RLSA-2025:13935

Important: golang security update

0%
Низкий
4 месяца назад
github логотип
GHSA-wprm-fgrx-xj42

The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.

CVSS3: 8.6
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-13941

ELSA-2025-13941: golang security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2025-13940

ELSA-2025-13940: go-toolset:rhel8 security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2025-13935

ELSA-2025-13935: golang security update (IMPORTANT)

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03161-1

Security update for go1.25-openssl

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03115-1

Security update for go1.25-openssl

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02924-1

Security update for go1.25

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02837-1

Security update for go1.24-openssl

5 месяцев назад

Уязвимостей на страницу