Go-yaml
This hub aggregates every CVE we track for Go-yaml, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
HIGH2
Monthly trend
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 2 most recently published vulnerabilities affecting Go-yaml.
- BDU:2025-02344Уязвимость функции Unmarshal библиотеки YAML языка программирования Go, связанная с недостатками механизма десериализации, позволяющая нарушителю вызвать отказ в обслуживании7.5
- CVE-2022-28948An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.7.5
Product normalization is registry-driven with AI assist and human review. How it works