Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service.
References
| Link | Resource |
|---|---|
| https://go.dev/cl/781702 | Issue Tracking |
| https://go.dev/issue/79573 | Issue Tracking |
| https://groups.google.com/g/golang-announce/c/iI-mYSI0lu8 | Mailing List |
| https://pkg.go.dev/vuln/GO-2026-5028 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-05-22 16:16
Updated : 2026-07-23 16:10
NVD link : CVE-2026-25680
Mitre link : CVE-2026-25680
CVE.ORG link : CVE-2026-25680
JSON object : View
Products Affected
golang
- net
CWE
CWE-400
Uncontrolled Resource Consumption
