The Go Vulnerability Database

Clone this repo:

Branches

  1. b9a5b41 all: update go.opentelemetry.io/otel by Nicholas S. Husin · 10 hours ago master
  2. 40203ed data/reports: add GO-2026-6665 by Ian Alexander · 2 days ago
  3. b5d1b88 data/reports: add GO-2026-6664 by Ian Alexander · 2 days ago
  4. dc28a86 data/reports: add 2 reports by Ian Alexander · 2 days ago
  5. 4001577 data/reports: add GO-2026-6489 by Ian Alexander · 2 days ago

The Go Vulnerability Database

Go Reference

This repository contains the infrastructure and internal reports to create the Go Vulnerability Database.

Warning: Packages here are internal to the Go Security Team and its needs; Some may be modified arbitrarily or even disappear altogether. In short, code in this repository is NOT subject to the Go 1 Compatibility Promise.

Check out https://go.dev/security/vuln for more information about the Go vulnerability management system.

Reporting a vulnerability or feedback

Click here to report a public vulnerability in the Go ecosystem, or give feedback about the project.

Privacy Policy

The privacy policy for govulncheck can be found at https://vuln.go.dev/privacy.

License

Unless otherwise noted, the Go source files are distributed under the BSD-style license found in the LICENSE file.

Database entries are distributed under the terms of the CC-BY-4.0 license. See go.dev/security/vuln/database for information on how to access these entries.