Known Vulnerabilities for Crypto by Golang
Listed below are 3 of the newest known vulnerabilities associated with "Crypto" by "Golang".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34875 | An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export f... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2026-34872 | An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory beha... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2026-34871 | An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable ... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2026-33895 | Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0... | Not Provided | 2026-03-27 | 2026-03-31 |
| CVE-2026-30285 | An arbitrary file overwrite vulnerability in Zora: Post, Trade, Earn Crypto v2.60.0 allows attackers to overwrite critical in... | Not Provided | 2026-03-31 | 2026-03-31 |
| CVE-2026-25835 | Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2025-66442 | In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs w... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2025-48147 | Missing Authorization vulnerability in Crypto Cloud CryptoCloud - Crypto Payment Gateway cryptocloud-crypto-payment-gateway a... | Not Provided | 2025-06-09 | 2026-04-01 |
| CVE-2025-48141 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Alex Zaytseff Multi Cry... | Not Provided | 2025-06-09 | 2026-04-01 |
| CVE-2019-11841 | A message-forgery issue was discovered in crypto/openpgp/clearsign/clearsign.go in supplementary Go cryptography libraries 20... | 5.9 - MEDIUM | 2019-05-22 | 2023-06-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Golang | Crypto | 2019-03-25 | All | All | All |
| Application | Golang | Crypto | 2019-03-20 | All | All | All |
| Application | Golang | Crypto | 2017-03-17 | All | All | All |
| Application | Golang | Crypto | 2017-03-07 | All | All | All |
| Application | Golang | Crypto | 2017-03-02 | All | All | All |
| Application | Golang | Crypto | 2017-02-09 | All | All | All |
| Application | Golang | Crypto | - | All | All | All |