Go Vulnerability Database
Data about new vulnerabilities come directly from Go package maintainers or sources such as MITRE and GitHub. Reports are curated by the Go Security team. Learn more at go.dev/security/vuln.
Search
Recent Reports
- CVE-2024-8063, GHSA-2xf2-gjm6-g2c6
- Affects: github.com/ollama/ollama
- Published: May 15, 2025
Ollama Divide by Zero Vulnerability in github.com/ollama/ollama
- CVE-2025-3931, GHSA-rpg2-jvhp-h354
- Affects: github.com/redhatinsights/yggdrasil
- Published: May 15, 2025
- Unreviewed
Yggdrasil Vulnerable to Local Privilege Escalation in github.com/redhatinsights/yggdrasil
- GHSA-869w-47c6-fq8q
- Affects: github.com/babylonlabs-io/babylon
- Published: May 15, 2025
- Unreviewed
Babylon Integer Overflow in Distribution Module CumulativeRewardRatio Calculation Leading to Chain Halt in github.com/babylonlabs-io/babylon
- GHSA-7mm3-vfg8-7rg6
- Affects: github.com/babylonlabs-io/babylon
- Published: May 15, 2025
- Unreviewed
Babylon Finality Provider `MsgCommitPubRandList` replay attack in github.com/babylonlabs-io/babylon
- GHSA-mjfq-3qr2-6g84
- Affects: github.com/cosmos/evm
- Published: May 15, 2025
- Unreviewed
Cosmos EVM Allows Partial Precompile State Writes in github.com/cosmos/evm
If you don't see an existing, public Go vulnerability in a publicly importable package in our database, please let us know.