Known Vulnerabilities for Grpc-go by Grpc
Listed below are 10 of the newest known vulnerabilities associated with "Grpc-go" by "Grpc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86502 json | In JetBrains IntelliJ IDEA before 2026.2.2 missing TLS and authentication on the IJent gRPC server allowed local code executi... | Not Provided | 2026-09-07 | 2026-09-09 |
| CVE-2026-84304 json | gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, internal/transport/transport.go stores each fragmented HT... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-84303 json | gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, the xDS RBAC HTTP filter in internal/xds/httpfilter/rbac/... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-82594 json | A vulnerability has been found in LogNet grpc-spring-boot-starter up to 5.2.0. Affected is an unknown function of the compone... | Not Provided | 2026-08-31 | 2026-08-31 |
| CVE-2026-80209 json | The updateWorkspace handler in mods/identity/src/workspaces/createUpdateWorkspace.ts in Fonoster through 0.22.7 invokes the g... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-75843 json | ArcadeDB before 26.8.1 fails to bind the authenticated principal on the gRPC transaction executor thread in beginTransaction,... | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-73499 json | etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.5.33, 3.6.14, and 3.7.1, a us... | Not Provided | 2026-08-12 | 2026-08-14 |
| CVE-2026-73080 json | SeaweedFS is a distributed storage system. Prior to 4.24, VolumeServer.FetchAndWriteNeedle in weed/server/volume_grpc_remote.... | Not Provided | 2026-08-11 | 2026-08-13 |
| CVE-2026-72920 json | SeaweedFS is a distributed storage system. Prior to 4.24, the filer registers the SeaweedIdentityAccessManagement gRPC servic... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-71485 json | Centrifugo is an open-source scalable real-time messaging server. Prior to 6.9.0, Centrifugo copies the client-controlled pro... | Not Provided | 2026-08-20 | 2026-08-25 |