Количество 23
Количество 23
CVE-2025-4674
The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.
CVE-2025-4674
The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.
CVE-2025-4674
The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.
CVE-2025-4674
Unexpected command execution in untrusted VCS repositories in cmd/go
CVE-2025-4674
The go command may execute unexpected commands when operating in untru ...
SUSE-SU-2025:02296-1
Security update for go1.23
SUSE-SU-2025:02295-1
Security update for go1.24
RLSA-2025:13941
Important: golang security update
RLSA-2025:13940
Important: go-toolset:rhel8 security update
RLSA-2025:13935
Important: golang security update
GHSA-wprm-fgrx-xj42
The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected.
ELSA-2025-13941
ELSA-2025-13941: golang security update (IMPORTANT)
ELSA-2025-13940
ELSA-2025-13940: go-toolset:rhel8 security update (IMPORTANT)
ELSA-2025-13935
ELSA-2025-13935: golang security update (IMPORTANT)
BDU:2025-09875
Уязвимость языка программирования Golang, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю выполнить произвольный код
ROS-20250808-06
Уязвимость golang
SUSE-SU-2025:03161-1
Security update for go1.25-openssl
SUSE-SU-2025:03115-1
Security update for go1.25-openssl
SUSE-SU-2025:02924-1
Security update for go1.25
SUSE-SU-2025:02837-1
Security update for go1.24-openssl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-4674 The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected. | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4674 The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected. | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4674 The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected. | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
CVE-2025-4674 Unexpected command execution in untrusted VCS repositories in cmd/go | CVSS3: 8.6 | 0% Низкий | 5 месяцев назад | |
CVE-2025-4674 The go command may execute unexpected commands when operating in untru ... | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
SUSE-SU-2025:02296-1 Security update for go1.23 | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:02295-1 Security update for go1.24 | 0% Низкий | 6 месяцев назад | ||
RLSA-2025:13941 Important: golang security update | 0% Низкий | 4 месяца назад | ||
RLSA-2025:13940 Important: go-toolset:rhel8 security update | 0% Низкий | 4 месяца назад | ||
RLSA-2025:13935 Important: golang security update | 0% Низкий | 4 месяца назад | ||
GHSA-wprm-fgrx-xj42 The go command may execute unexpected commands when operating in untrusted VCS repositories. This occurs when possibly dangerous VCS configuration is present in repositories. This can happen when a repository was fetched via one VCS (e.g. Git), but contains metadata for another VCS (e.g. Mercurial). Modules which are retrieved using the go command line, i.e. via "go get", are not affected. | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
ELSA-2025-13941 ELSA-2025-13941: golang security update (IMPORTANT) | 5 месяцев назад | |||
ELSA-2025-13940 ELSA-2025-13940: go-toolset:rhel8 security update (IMPORTANT) | 5 месяцев назад | |||
ELSA-2025-13935 ELSA-2025-13935: golang security update (IMPORTANT) | 5 месяцев назад | |||
BDU:2025-09875 Уязвимость языка программирования Golang, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.6 | 0% Низкий | 6 месяцев назад | |
ROS-20250808-06 Уязвимость golang | CVSS3: 8.6 | 0% Низкий | 5 месяцев назад | |
SUSE-SU-2025:03161-1 Security update for go1.25-openssl | 4 месяца назад | |||
SUSE-SU-2025:03115-1 Security update for go1.25-openssl | 4 месяца назад | |||
SUSE-SU-2025:02924-1 Security update for go1.25 | 5 месяцев назад | |||
SUSE-SU-2025:02837-1 Security update for go1.24-openssl | 5 месяцев назад |
Уязвимостей на страницу