Launch Week Day 1: Announcing Security Design Review
go

go.etcd.io/etcd

View on go registry
16 Total advisories
16 Vulnerabilities
0 Malware

Vulnerabilities

NONE 0.0
Go

CVE-2026-44283

etcd RBAC bypass allows unauthorized data access via PrevKv/lease attachment in nested transaction Put requests

UNKNOWN
Go

CVE-2026-33343

Nested etcd transactions bypass RBAC authorization checks in go.etcd.io/etcd

NONE 0.0
Go

CVE-2026-33343

etcd: Nested etcd transactions bypass RBAC authorization checks

UNKNOWN
Go

CVE-2026-33413

etcd: Authorization bypasses in multiple APIs

UNKNOWN
Go

CVE-2026-33413

Authorization bypasses in multiple APIs in go.etcd.io/etcd

MEDIUM 6.5
Go

CVE-2020-15136

Etcd Gateway TLS authentication only applies to endpoints detected in DNS SRV records

HIGH 7.7
Go

CVE-2020-15114

Etcd Gateway can include itself as an endpoint resulting in resource exhaustion

LOW 3.7
Go

CVE-2020-15106

Panic due to malformed WALs in go.etcd.io/etcd

MEDIUM 5.5
Go

CVE-2018-1099

DNS Rebinding in etcd

UNKNOWN
Go

CVE-2018-16886

Authentication bypass in go.etcd.io/etcd

UNKNOWN
Go

GHSA-pm3m-32r3-7mfh

Etcd embed auto compaction retention negative value causing a compaction loop or a crash in go.etcd.io/etcd

UNKNOWN
Go

GHSA-5x4g-q5rc-36jp

Insecure ciphers are allowed by default in go.etcd.io/etcd

UNKNOWN
Go

GHSA-vjg6-93fv-qv64

Etcd auth Inaccurate logging of authentication attempts for users with CN-based auth only in go.etcd.io/etcd

UNKNOWN
Go

CVE-2020-15106

Panic due to malformed WALs in go.etcd.io/etcd

UNKNOWN
Go

GHSA-j86v-2vjr-fg8f

Etcd Gateway TLS endpoint validation only confirms TCP reachability in go.etcd.io/etcd

HIGH 8.1
Go

CVE-2018-16886

go.etcd.io/etcd Authentication Bypass

Ready to move

Start Securing

Free, no credit card | First findings in minutes