Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2020-36563: GO-2020-0047 - Go Packages

XML Digital Signatures generated and validated using this package use SHA-1, which may allow an attacker to craft inputs which cause hash collisions depending on their control over the input.

CVE
#git
  • Why Go

    • Common problems companies solve with Go

    • Stories about how and why companies use Go

    • How Go can help keep you secure by default

  • Learn

  • Docs

    • Tips for writing clear, performant, and idiomatic Go code

    • A complete introduction to building software with Go

    • Reference documentation for Go’s standard library

    • Learn what’s new in each Go release

  • Packages

  • Community

    • Videos from prior events

    • Meet other local Go developers

    • Learn and network with Go developers from around the world

    • The Go project’s official blog.

    • Get help and stay informed from Go

    • Get connected

Related news

GHSA-5rhg-xhgr-5hfj: go-saml's XML Digital Signatures use SHA-1

XML Digital Signatures generated and validated using this package use SHA-1, which may allow an attacker to craft inputs which cause hash collisions depending on their control over the input.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda