Known Vulnerabilities for Html/template by Go Standard Library
Listed below are 10 of the newest known vulnerabilities associated with "Html/template" by "Go Standard Library".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-67174 json | Pivotick contains a DOM-based cross-site scripting vulnerability in its generic UI element resolution and icon-rendering util... | Not Provided | 2026-07-28 | 2026-07-28 |
| CVE-2026-65605 json | SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Temp... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-58500 json | MCP Appium is an MCP server that provides AI assistants with tools to automate mobile app testing on Android and iOS. In vers... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-55746 json | Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to stored Cross-Site Scripting in the Personal File Storage (PFS... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-54458 json | WWBN AVideo is an open source video platform. Versions prior to 29.0 contain a stored DOM Cross-Site Scripting vulnerability ... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-53742 json | Simple Link Directory through 9.0.4 echoes embed shortcode attributes into HTML data attributes without escaping in the embed... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-53641 json | FOSSBilling is a free, open-source billing and client management system. Versions 0.6.0 through 0.7.2 have a stored cross-sit... | Not Provided | 2026-07-06 | 2026-07-08 |
| CVE-2026-52846 json | Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, Caddy’s stripHTML template function canno... | Not Provided | 2026-06-23 | 2026-06-25 |
| CVE-2026-50556 json | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other lang... | Not Provided | 2026-06-22 | 2026-07-15 |
| CVE-2026-50146 json | Astro is a web framework. Prior to 6.3.3, when a component uses a client:* directive, Astro inserts named slot content into a... | Not Provided | 2026-06-22 | 2026-06-23 |