CVE-2026-25679
EUVD-2026-1008406.03.2026, 22:16
url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| golang | go | 𝑥 < 1.25.8 |
| golang | go | 1.26.0 |
𝑥
= Vulnerable software versions
Debian Releases
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||
|---|---|---|---|---|---|---|---|
| git-lfs |
| ||||||
| go-filesystem |
| ||||||
| go-rpm-macros |
| ||||||
| go-rpm-templates |
| ||||||
| go-srpm-macros |
| ||||||
| go-toolset |
| ||||||
| golang |
| ||||||
| golang-bin |
| ||||||
| golang-docs |
| ||||||
| golang-misc |
| ||||||
| golang-race |
| ||||||
| golang-src |
| ||||||
| golang-tests |
| ||||||
| grafana |
| ||||||
| grafana-azure-monitor |
| ||||||
| grafana-cloudwatch |
| ||||||
| grafana-elasticsearch |
| ||||||
| grafana-graphite |
| ||||||
| grafana-influxdb |
| ||||||
| grafana-loki |
| ||||||
| grafana-mssql |
| ||||||
| grafana-mysql |
| ||||||
| grafana-opentsdb |
| ||||||
| grafana-pcp |
| ||||||
| grafana-postgres |
| ||||||
| grafana-prometheus |
| ||||||
| grafana-selinux |
| ||||||
| grafana-stackdriver |
| ||||||
| image-builder |
| ||||||
| opentelemetry-collector |
| ||||||
| osbuild-composer |
| ||||||
| osbuild-composer-core |
| ||||||
| osbuild-composer-worker |
| ||||||
| rhc |
| ||||||
| rhc-devel |
|
Common Weakness Enumeration