Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service.
References
| Link | Resource |
|---|---|
| https://go.dev/cl/781702 | Issue Tracking |
| https://go.dev/issue/79573 | Issue Tracking |
| https://groups.google.com/g/golang-announce/c/iI-mYSI0lu8 | Mailing List |
| https://pkg.go.dev/vuln/GO-2026-5028 | Vendor Advisory |
Configurations
History
29 May 2026, 15:47
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://go.dev/cl/781702 - Issue Tracking | |
| References | () https://go.dev/issue/79573 - Issue Tracking | |
| References | () https://groups.google.com/g/golang-announce/c/iI-mYSI0lu8 - Mailing List | |
| References | () https://pkg.go.dev/vuln/GO-2026-5028 - Vendor Advisory | |
| First Time |
Golang net
Golang |
|
| CPE | cpe:2.3:a:golang:net:*:*:*:*:*:go:*:* | |
| CWE | CWE-400 |
22 May 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-22 16:16
Updated : 2026-05-29 15:47
NVD link : CVE-2026-25680
Mitre link : CVE-2026-25680
CVE.ORG link : CVE-2026-25680
JSON object : View
Products Affected
golang
- net
CWE
CWE-400
Uncontrolled Resource Consumption
