{"api_version":"v1","generated_at":"2026-10-08T20:35:00+00:00","product":{"cve_count":21,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-go-toolchain-cmd-go-f4cede15cc62","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"cmd/go","next_cursor":null,"observations":[{"affected":"< 1.25.13; 1.26.0-0 < 1.26.6; 1.27.0-0 < 1.27.0-rc.3; < 0.40.0","affected_versions_present":true,"cve_id":"CVE-2026-56864","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56864","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-14T16:16:42.248Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-56864","primary_source":"","published":"2026-08-13T21:58:53.605Z"},{"affected":"< 1.25.13; 1.26.0-0 < 1.26.6; 1.27.0-0 < 1.27.0-rc.3; < 0.40.0","affected_versions_present":true,"cve_id":"CVE-2026-56865","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56865","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-14T15:34:17.235Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-56865","primary_source":"","published":"2026-08-13T21:58:53.475Z"},{"affected":"< 1.25.10; 1.26.0-0 < 1.26.3","affected_versions_present":true,"cve_id":"CVE-2026-42501","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42501","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-08T15:48:47.404Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-42501","primary_source":"","published":"2026-05-07T19:41:19.691Z"},{"affected":"< 1.25.10; 1.26.0-0 < 1.26.3","affected_versions_present":true,"cve_id":"CVE-2026-39817","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39817","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-08T21:29:47.246Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-39817","primary_source":"","published":"2026-05-07T19:41:18.993Z"},{"affected":"< 1.25.10; 1.26.0-0 < 1.26.3","affected_versions_present":true,"cve_id":"CVE-2026-39819","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39819","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-08T21:29:53.674Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-39819","primary_source":"","published":"2026-05-07T19:41:18.849Z"},{"affected":"cmd/go: < 1.25.9, 1.26.0-0 < 1.26.2","affected_versions_present":true,"cve_id":"CVE-2026-27140","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27140","fixed":"RHSA-2026:16024: Red Hat Enterprise Linux AppStream EUS (v. 10.0)","last_modified":"2026-09-10T12:04:54.969Z","patch_url":"https://go.dev/cl/763768","primary_source":"","published":"2026-04-08T01:06:57.893Z"},{"affected":"cmd/go: < 1.24.12, 1.25.0 < 1.25.6","affected_versions_present":true,"cve_id":"CVE-2025-61731","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-61731","fixed":"RHSA-2026:5943: Red Hat Enterprise Linux AppStream EUS (v. 10.0)","last_modified":"2026-09-10T12:04:55.876Z","patch_url":"https://go.dev/cl/736711","primary_source":"","published":"2026-01-28T19:30:30.844Z"},{"affected":"1.25.0 < 1.25.6","affected_versions_present":true,"cve_id":"CVE-2025-68119","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68119","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T15:04:45.665Z","patch_url":"https://go.dev/cl/736710","primary_source":"","published":"2026-01-28T19:30:30.704Z"},{"affected":"< 1.23.11; 1.24.0-0 < 1.24.5","affected_versions_present":true,"cve_id":"CVE-2025-4674","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-4674","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-04T21:10:50.871Z","patch_url":"https://go.dev/cl/686515","primary_source":"","published":"2025-07-29T21:19:08.519Z"},{"affected":"1.24.0-rc.2 < 1.24.0-rc.3","affected_versions_present":true,"cve_id":"CVE-2025-22867","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-22867","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-06T21:23:25.105Z","patch_url":"","primary_source":"","published":"2025-02-06T17:09:56.893Z"},{"affected":"1.24.0-0 < 1.24.0-rc.2","affected_versions_present":true,"cve_id":"CVE-2024-45340","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-45340","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-01-30T19:14:21.639Z","patch_url":"","primary_source":"","published":"2025-01-28T01:03:24.605Z"},{"affected":"< 1.21.0-0","affected_versions_present":true,"cve_id":"CVE-2023-24531","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-24531","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-28T15:02:59.076Z","patch_url":"","primary_source":"","published":"2024-07-02T19:51:48.731Z"},{"affected":"< 1.21.10; 1.22.0-0 < 1.22.3","affected_versions_present":true,"cve_id":"CVE-2024-24787","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-24787","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T17:40:26.439Z","patch_url":"","primary_source":"","published":"2024-05-08T15:31:14.530Z"},{"affected":"< 1.20.12; 1.21.0-0 < 1.21.5","affected_versions_present":true,"cve_id":"CVE-2023-45285","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-45285","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2025-02-13T17:14:00.033Z","patch_url":"https://access.redhat.com/security/cve/CVE-2023-45285","primary_source":"","published":"2023-12-06T16:27:55.521Z"},{"affected":"< 1.20.9; 1.21.0-0 < 1.21.2","affected_versions_present":true,"cve_id":"CVE-2023-39323","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39323","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-06-12T15:15:12.065Z","patch_url":"https://go.dev/issue/63211","primary_source":"","published":"2023-10-05T20:36:58.756Z"},{"affected":"1.21.0-0 < 1.21.1","affected_versions_present":true,"cve_id":"CVE-2023-39320","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39320","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-02-13T17:02:48.022Z","patch_url":"https://go.dev/cl/526158","primary_source":"","published":"2023-09-08T16:13:26.609Z"},{"affected":"< 1.19.10; 1.20.0-0 < 1.20.5","affected_versions_present":true,"cve_id":"CVE-2023-29405","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29405","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-06T19:44:24.568Z","patch_url":"https://go.dev/cl/501224","primary_source":"","published":"2023-06-08T20:19:19.267Z"},{"affected":"< 1.19.10; 1.20.0-0 < 1.20.5","affected_versions_present":true,"cve_id":"CVE-2023-29404","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29404","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-06T19:47:57.434Z","patch_url":"https://go.dev/cl/501225","primary_source":"","published":"2023-06-08T20:19:17.548Z"},{"affected":"< 1.19.10; 1.20.0-0 < 1.20.5","affected_versions_present":true,"cve_id":"CVE-2023-29402","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29402","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-02-13T16:49:13.450Z","patch_url":"https://go.dev/cl/501226","primary_source":"","published":"2023-06-08T20:19:04.483Z"},{"affected":"< 1.14.12; 1.15.0-0 < 1.15.5","affected_versions_present":true,"cve_id":"CVE-2020-28367","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-28367","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T16:33:59.087Z","patch_url":"","primary_source":"","published":"2020-11-18T00:00:00.000Z"},{"affected":"< 1.14.12; 1.15.0-0 < 1.15.5","affected_versions_present":true,"cve_id":"CVE-2020-28366","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-28366","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T16:33:58.955Z","patch_url":"","primary_source":"","published":"2020-11-18T00:00:00.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Go toolchain"}}
