Количество 14
Количество 14

CVE-2023-45285
Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off).

CVE-2023-45285
Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off).

CVE-2023-45285
Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off).
CVE-2023-45285
Using go get to fetch a module with the ".git" suffix may unexpectedly ...
GHSA-5f94-vhjq-rpg8
Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off).

BDU:2024-00176
Уязвимость компонента cmd-go языка программирования Go, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ELSA-2024-1131
ELSA-2024-1131: golang security update (MODERATE)
ELSA-2024-0887
ELSA-2024-0887: go-toolset:ol8 security update (MODERATE)

SUSE-SU-2023:4931-1
Security update for go1.21-openssl

SUSE-SU-2023:4930-1
Security update for go1.20-openssl

SUSE-SU-2023:4709-1
Security update for go1.21

SUSE-SU-2023:4708-1
Security update for go1.20

ROS-20240402-17
Множественные уязвимости golang

ROS-20240805-03
Множественные уязвимости consul
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-45285 Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off). | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-45285 Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off). | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-45285 Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off). | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
CVE-2023-45285 Using go get to fetch a module with the ".git" suffix may unexpectedly ... | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
GHSA-5f94-vhjq-rpg8 Using go get to fetch a module with the ".git" suffix may unexpectedly fallback to the insecure "git://" protocol if the module is unavailable via the secure "https://" and "git+ssh://" protocols, even if GOINSECURE is not set for said module. This only affects users who are not using the module proxy and are fetching modules directly (i.e. GOPROXY=off). | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
![]() | BDU:2024-00176 Уязвимость компонента cmd-go языка программирования Go, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
ELSA-2024-1131 ELSA-2024-1131: golang security update (MODERATE) | больше 1 года назад | |||
ELSA-2024-0887 ELSA-2024-0887: go-toolset:ol8 security update (MODERATE) | больше 1 года назад | |||
![]() | SUSE-SU-2023:4931-1 Security update for go1.21-openssl | больше 1 года назад | ||
![]() | SUSE-SU-2023:4930-1 Security update for go1.20-openssl | больше 1 года назад | ||
![]() | SUSE-SU-2023:4709-1 Security update for go1.21 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4708-1 Security update for go1.20 | больше 1 года назад | ||
![]() | ROS-20240402-17 Множественные уязвимости golang | CVSS3: 7.5 | около 1 года назад | |
![]() | ROS-20240805-03 Множественные уязвимости consul | CVSS3: 7.5 | 11 месяцев назад |
Уязвимостей на страницу