The Go Vulnerability Database

Clone this repo:

Branches

  1. 2ff2c86 all: rename cveschema5 and cveschema to cve5 and cve4 by Tatiana Bradley · 9 days ago master
  2. 57274b4 internal/{ghsa,report}: move ghsaToReport to ghsa package by Tatiana Bradley · 9 days ago
  3. 685ac19 all: move cve/ghsa utils to their own package by Tatiana Bradley · 3 weeks ago
  4. 3b6f478 cmd/vulnreport: fix two bugs in "vulnreport duplicates" by Tatiana Bradley · 7 days ago
  5. f1651ad data/reports: add GO-2024-2831.yaml by Tim King · 3 days ago

The Go Vulnerability Database

Go Reference

This repository contains the infrastructure and internal reports to create the Go Vulnerability Database.

Check out https://go.dev/security/vuln for more information about the Go vulnerability management system.

Reporting a vulnerability or feedback

Click here to report a public vulnerability in the Go ecosystem, or give feedback about the project.

Privacy Policy

The privacy policy for govulncheck can be found at https://vuln.go.dev/privacy.

License

Unless otherwise noted, the Go source files are distributed under the BSD-style license found in the LICENSE file.

Database entries are distributed under the terms of the CC-BY-4.0 license. See go.dev/security/vuln/database for information on how to access these entries.