Go Package Vulnerabilities

All 1,317 Go modules with known CVEs, ranked by live CVE volume — 5,619 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.

  1. 701.github.com/containerd/imgcrypt1 CVE
  2. 702.github.com/containernetworking/cni1 CVE
  3. 703.github.com/containers/common1 CVE
  4. 704.github.com/containers/image/v51 CVE
  5. 705.github.com/containers/psgo1 CVE
  6. 706.github.com/containers/storage1 CVE
  7. 707.github.com/containous/traefik/api1 CVE
  8. 708.github.com/containous/traefik/v2/pkg/api1 CVE
  9. 709.github.com/containrrr/shoutrrr1 CVE
  10. 710.github.com/contribsys/faktory1 CVE
  11. 711.github.com/controlplaneio-fluxcd/flux-operator1 CVE
  12. 712.github.com/corazawaf/coraza1 CVE
  13. 713.github.com/coreos/ignition1 CVE
  14. 714.github.com/coreos/ignition/v21 CVE
  15. 715.github.com/cortexlabs/cortex1 CVE
  16. 716.github.com/cosmos/cosmos-sdk1 CVE
  17. 717.github.com/crossplane/crossplane-runtime1 CVE
  18. 718.github.com/csaf-poc/csaf_distribution1 CVE
  19. 719.github.com/ctfer-io/chall-manager/deploy1 CVE
  20. 720.github.com/ctfer-io/chall-manager/sdk1 CVE
  21. 721.github.com/ctfer-io/fullchain1 CVE
  22. 722.github.com/dablelv/go-huge-util1 CVE
  23. 723.github.com/dapr/dashboard1 CVE
  24. 724.github.com/darklynx/request-baskets1 CVE
  25. 725.github.com/datacharmer/dbdeployer1 CVE
  26. 726.github.com/DataDog/dd-trace-go1 CVE
  27. 727.github.com/DataDog/dd-trace-go/v21 CVE
  28. 728.github.com/DatanoiseTV/tinyice1 CVE
  29. 729.github.com/ddev/ddev1 CVE
  30. 730.github.com/deislabs/oras1 CVE
  31. 731.github.com/deislabs/ratify1 CVE
  32. 732.github.com/deis/workflow-manager1 CVE
  33. 733.github.com/destinygg/chat1 CVE
  34. 734.github.com/devfile/registry-support/registry-library1 CVE
  35. 735.github.com/dgrijalva/jwt-go1 CVE
  36. 736.github.com/dgrijalva/jwt-go/v41 CVE
  37. 737.github.com/dhax/go-base1 CVE
  38. 738.github.com/dinever/golf1 CVE
  39. 739.github.com/disintegration/imaging1 CVE
  40. 740.github.com/docker/buildx1 CVE
  41. 741.github.com/docker/compose/v51 CVE
  42. 742.github.com/docker/docker-ce1 CVE
  43. 743.github.com/docker/model-runner1 CVE
  44. 744.github.com/docker/notary1 CVE
  45. 745.github.com/documize/community1 CVE
  46. 746.github.com/dotmesh-io/dotmesh1 CVE
  47. 747.github.com/doyensec/safeurl1 CVE
  48. 748.github.com/duke-git/lancet1 CVE
  49. 749.github.com/duke-git/lancet/v21 CVE
  50. 750.github.com/dunglas/mercure1 CVE

Which Go packages run in YOUR stack?

EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.

Start Free Scan →