Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.1% on proxy.golang.org
Top 0.1% dependent packages on proxy.golang.org
Top 0.1% dependent repos on proxy.golang.org
Top 0.1% docker downloads on proxy.golang.org

proxy.golang.org : golang.org/x/crypto

Registry - Source - Documentation - JSON
purl: pkg:golang/golang.org/x/crypto
License: BSD-3-Clause
Latest release: 4 months ago
First release: over 1 year ago
Namespace: golang.org/x
Dependent packages: 125,672
Dependent repositories: 269,003
Docker dependents: 33,289
Docker downloads: 83,911,922,321
Last synced: 3 days ago

High
GSA_kwCzR0hTQS0zdm00LTIyZnAtNXJmbc4AArAQ
golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS1yNWM1LXByOGotcGZwN84AAgqb
golang.org/x/crypto/salsa20/salsa uses insufficiently random values
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS00NXg3LXB4MzYteDh3OM4AA34H
Prefix Truncation Attack against ChaCha20-Poly1305 and Encrypt-then-MAC aka Terrapin
Ecosystems: pypi, go, cargo
Packages: paramiko, golang.org/x/crypto, russh
Source: github
Published: 5 months ago
High
GSA_kwCzR0hTQS14aGpxLXc3eG0tcDhxas4AAxeY
golang.org/x/crypto/ssh Man-in-the-Middle attack
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: over 1 year ago
Moderate
GSA_kwCzR0hTQS14M2pyLXBmNmctYzQ4Zs4AAgxZ
Golang/x/crypto message forgery vulnerability
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: almost 2 years ago
High
GSA_kwCzR0hTQS04YzI2LXdtaDUtNmc5ds00tw
golang.org/x/crypto/ssh Denial of service via crafted Signer
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: about 2 years ago
High
GSA_kwCzR0hTQS1nd2M5LW03cmgtajJ3d84AAup1
x/crypto/ssh vulnerable to panic via malformed packets
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: over 1 year ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWNqamMteHA4di04NTV3
Helm uses crypto package vulnerable to panic from malformed X.509 certificate
Ecosystems: go
Packages: helm.sh/helm/v3, golang.org/x/crypto, github.com/helm/helm
Source: github
Published: almost 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZmaGctN21oNC0zM2M0
Improper Verification of Cryptographic Signature in golang.org/x/crypto
Ecosystems: go
Packages: golang.org/x/crypto
Source: github
Published: almost 3 years ago