Go standard library net/http/internal/http2

1 known vulnerability in Go standard library net/http/internal/http2, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-39821 CVSS 9.6 critical The ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label. For example…