go

github.com/gravitl/netmaker

View on go registry
22 Total advisories
22 Vulnerabilities
0 Malware

Dependency scanning

Check whether github.com/gravitl/netmaker is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

HIGH 8.2
Go

CVE-2026-38651

Netmaker does not verify JWT signatures for host tokens

UNKNOWN
Go

CVE-2026-38651

Netmaker does not verify JWT signatures for host tokens in github.com/gravitl/netmaker

HIGH 7.2
Go

CVE-2022-23650

Use of Hard-coded Cryptographic Key in Netmaker

HIGH 7.5
Go

CVE-2023-32077

Netmaker has Hardcoded DNS Secret Key

HIGH 8.1
Go

CVE-2026-29194

Netmaker has Insufficient Authorization in Host Token Verification

UNKNOWN
Go

CVE-2026-29195

Netmaker has Privilege Escalation from Admin to Super-Admin via User Update

UNKNOWN
Go

CVE-2026-29771

Netmaker Vulnerable to Denial of Service via Server Shutdown Endpoint

UNKNOWN
Go

CVE-2026-29196

Netmaker: Service User with Network Access Can Access config files with WireGuard Private Keys

UNKNOWN
Go

CVE-2026-29771

Netmaker Vulnerable to Denial of Service via Server Shutdown Endpoint in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2026-29194

Netmaker has Insufficient Authorization in Host Token Verification in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2026-29195

Netmaker has Privilege Escalation from Admin to Super-Admin via User Update in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2026-29196

Netmaker: Service User with Network Access Can Access config files with WireGuard Private Keys in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2023-32077

Netmaker has Hardcoded DNS Secret Key in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2023-32078

Netmaker IDOR Allows User to Update Other User's Password in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2023-32079

Netmaker Vulnerable to Privilege Escalation From Non Admin To Admin User in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2022-36110

Netmaker vulnerable to Insufficient Granularity of Access Control in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2022-0664

Use of Hard-coded Cryptographic Key in Netmaker in github.com/gravitl/netmaker

UNKNOWN
Go

CVE-2022-23650

Use of Hard-coded Cryptographic Key in Netmaker in github.com/gravitl/netmaker

HIGH 8.8
Go

CVE-2022-36110

Netmaker vulnerable to Insufficient Granularity of Access Control

HIGH 8.8
Go

CVE-2022-0664

Use of Hard-coded Cryptographic Key in Netmaker

HIGH 7.5
Go

CVE-2023-32078

Netmaker IDOR Allows User to Update Other User's Password

HIGH 8.8
Go

CVE-2023-32079

Netmaker Vulnerable to Privilege Escalation From Non Admin To Admin User

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes