10 Total advisories
10 Vulnerabilities
0 Malware
Dependency scanning
Check whether github.com/getkin/kin-openapi is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
UNKNOWN
CVE-2026-77354
kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding
HIGH 7.5
CVE-2026-76905
kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS
CRITICAL 9.1
CVE-2026-73501
kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default
HIGH 7.5
CVE-2025-30153
Improper Handling of Highly Compressed Data (Data Amplification) in github.com/getkin/kin-openapi/openapi3filter
MEDIUM 5.3
CVE-2026-73502
kin-openapi openapi3filter: unauthenticated nil-pointer panic when validating a request against a `content` parameter whose media type has no schema
UNKNOWN
CVE-2026-73501
Authentication bypass via default NoopAuthenticationFunc in github.com/getkin/kin-openapi
UNKNOWN
CVE-2026-73502
Nil-pointer panic on content parameter without schema in github.com/getkin/kin-openapi
UNKNOWN
CVE-2026-77354
kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding in github.com/getkin/kin-openapi
UNKNOWN
CVE-2026-76905
kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS in github.com/getkin/kin-openapi
UNKNOWN
CVE-2025-30153
Improper Handling of Highly Compressed Data (Data Amplification) in github.com/getkin/kin-openapi/openapi3filter
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes