Known Vulnerabilities for Go-slug by Hashicorp
Listed below are 1 of the newest known vulnerabilities associated with "Go-slug" by "Hashicorp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44898 json | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, render_toc_ul() builds a
|
Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-42456 json | AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. P... | Not Provided | 2026-05-08 | 2026-05-11 |
| CVE-2026-41937 json | Vvveb before 1.0.8.3 contains an unrestricted file upload vulnerability in the plugin upload endpoint that allows super_admin... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-41572 json | Note Mark is an open-source note-taking application. Prior to version 0.19.3, after a note-mark owner soft-deletes a public b... | Not Provided | 2026-05-04 | 2026-05-04 |
| CVE-2026-41318 json | AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. P... | Not Provided | 2026-04-24 | 2026-04-24 |
| CVE-2026-40588 json | blueprintUE is a tool to help Unreal Engine developers. Prior to 4.2.0, the password change form at /profile/{slug}/edit/ doe... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-40102 json | Plane is an open-source project management tool. In versions 1.3.0 and below, SavedAnalyticEndpoint passes the user-controlle... | Not Provided | 2026-05-20 | 2026-05-21 |
| CVE-2026-39857 json | ApostropheCMS is an open-source Node.js content management system. Versions 4.28.0 and prior contain an authorization bypass ... | Not Provided | 2026-04-15 | 2026-04-16 |
| CVE-2026-32736 json | The Hytale Modding Wiki is a free service for Hytale mods to host their documentation & wikis. An Insecure Direct Object Refe... | Not Provided | 2026-03-18 | 2026-03-19 |
| CVE-2026-26351 json | GetSimpleCMS Community Edition (CE) versions prior to 3.3.22 (3.3.16 tested) contains a stored cross-site scripting (XSS) vul... | Not Provided | 2026-02-24 | 2026-05-25 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hashicorp | Go-slug | 0.5.0 | |||
| Application | Hashicorp | Go-slug | 0.4.3 | |||
| Application | Hashicorp | Go-slug | 0.4.2 | |||
| Application | Hashicorp | Go-slug | 0.4.1 | |||
| Application | Hashicorp | Go-slug | 0.4.0 | |||
| Application | Hashicorp | Go-slug | 0.3.1 | |||
| Application | Hashicorp | Go-slug | 0.3.0 | |||
| Application | Hashicorp | Go-slug | 0.2.0 | |||
| Application | Hashicorp | Go-slug | 0.1.0 |