golang.org/x/net/html
2 known vulnerabilities in golang.org/x/net/html, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-25680 CVSS 6.5 medium Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service.
- CVE-2025-22872 CVSS 6.5 medium The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When…