Known Vulnerabilities for Go-libp2p by Libp2p
Listed below are 1 of the newest known vulnerabilities associated with "Go-libp2p" by "Libp2p".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89146 json | libp2p-rendezvous through 0.17.1 fails to validate registration TTL values in discovery responses, allowing attackers to trig... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-86040 json | libp2p is a JavaScript implementation of the libp2p networking stack. Prior to 11.0.26, @libp2p/floodsub accepts unauthentica... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-86039 json | libp2p is a JavaScript implementation of the libp2p networking stack. From 8.0.0 until 12.0.24, @libp2p/peer-store in package... | Not Provided | 2026-09-17 | 2026-09-21 |
| CVE-2026-86038 json | libp2p is a JavaScript implementation of the libp2p networking stack. From 15.0.0 until 16.0.5, @libp2p/gossipsub uses the de... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-77384 json | libp2p is a JavaScript implementation of the libp2p networking stack. Prior to version 4.2.9, the reservation refresh path in... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-73568 json | py-libp2p is the Python implementation of the libp2p networking stack. In 0.7.0 and earlier, the yamux handle_incoming() meth... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-61544 json | libp2p-rust is the official Rust language implementation of the libp2p networking stack. Prior to 0.13.1, libp2p-quic could p... | Not Provided | 2026-09-15 | 2026-09-17 |
| CVE-2026-52878 json | Klever-Go is the Go implementation of the Klever blockchain protocol. Versions 1.7.14 through 1.7.17 are vulnerable to a nil-... | Not Provided | 2026-08-07 | 2026-08-10 |
| CVE-2026-49866 json | libp2p is a JavaScript Implementation of libp2p networking stack. Prior to 16.0.0, @libp2p/gossipsub defaultDecodeRpcLimits s... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2023-39533 json | go-libp2p is the Go implementation of the libp2p Networking Stack. Prior to versions 0.27.8, 0.28.2, and 0.29.1 malicious pee... | Not Provided | 2023-08-08 | 2026-09-01 |