go

github.com/getkin/kin-openapi

View on go registry
10 Total advisories
10 Vulnerabilities
0 Malware

Dependency scanning

Check whether github.com/getkin/kin-openapi is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

UNKNOWN
Go

CVE-2026-77354

kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding

HIGH 7.5
Go

CVE-2026-76905

kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS

CRITICAL 9.1
Go

CVE-2026-73501

kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default

HIGH 7.5
Go

CVE-2025-30153

Improper Handling of Highly Compressed Data (Data Amplification) in github.com/getkin/kin-openapi/openapi3filter

MEDIUM 5.3
Go

CVE-2026-73502

kin-openapi openapi3filter: unauthenticated nil-pointer panic when validating a request against a `content` parameter whose media type has no schema

UNKNOWN
Go

CVE-2026-73501

Authentication bypass via default NoopAuthenticationFunc in github.com/getkin/kin-openapi

UNKNOWN
Go

CVE-2026-73502

Nil-pointer panic on content parameter without schema in github.com/getkin/kin-openapi

UNKNOWN
Go

CVE-2026-77354

kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding in github.com/getkin/kin-openapi

UNKNOWN
Go

CVE-2026-76905

kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS in github.com/getkin/kin-openapi

UNKNOWN
Go

CVE-2025-30153

Improper Handling of Highly Compressed Data (Data Amplification) in github.com/getkin/kin-openapi/openapi3filter

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes