PT-2026-2480 · Go+2 · Net/Url+2
Jub0Bs
·
Published
2025-01-01
·
Updated
2026-05-21
·
CVE-2025-61726
CVSS v2.0
7.8
High
| Base vector | Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Go net/url package (affected versions not specified)
Description
The net/url package does not limit the number of query parameters, potentially leading to excessive memory consumption when parsing large URL-encoded forms with many unique query parameters using the net/http.Request.ParseForm method. This can result in memory exhaustion.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
ALSA-2026:18913
ALSA-2026:19013
ALSA-2026:2706
ALSA-2026:2708
ALSA-2026:2709
ALSA-2026:2914
ALSA-2026:2920
ALSA-2026:3035
ALSA-2026:3040
ALSA-2026:3092
ALSA-2026:3187
ALSA-2026:3188
ALSA-2026:3291
ALSA-2026:3297
ALSA-2026:3298
ALSA-2026:3336
ALSA-2026:3337
ALSA-2026:3340
ALSA-2026:3341
ALSA-2026:3343
ALSA-2026:3668
ALSA-2026:3669
ALSA-2026:3752
ALSA-2026:3753
ALSA-2026:3839
ALSA-2026:3840
ALSA-2026:3864
ALSA-2026:3898
ALSA-2026:3928
ALSA-2026:3985
ALSA-2026:4164
ALSA-2026:4174
ALSA-2026:4177
ALSA-2026:4672
ALSA-2026:5145
ALSA-2026:5146
AZL-75642
AZL-75695
AZL-75734
AZL-78925
BDU:2026-03409
BIT-GOLANG-2025-61726
CLEANSTART-2026-AC01087
CLEANSTART-2026-AC65885
CLEANSTART-2026-AE87452
CLEANSTART-2026-AH29678
CLEANSTART-2026-AN32474
CLEANSTART-2026-BB17877
CLEANSTART-2026-BB70412
CLEANSTART-2026-BB83999
CLEANSTART-2026-BG69533
CLEANSTART-2026-BK44511
CLEANSTART-2026-BM53321
CLEANSTART-2026-BR79647
CLEANSTART-2026-BS27946
CLEANSTART-2026-CB01846
CLEANSTART-2026-CC08450
CLEANSTART-2026-CD91667
CLEANSTART-2026-CH40794
CLEANSTART-2026-CH77232
CLEANSTART-2026-CI59834
CLEANSTART-2026-CL65461
CLEANSTART-2026-CN84623
CLEANSTART-2026-CR55131
CLEANSTART-2026-DB61851
CLEANSTART-2026-DF22934
CLEANSTART-2026-DG06447
CLEANSTART-2026-DO09088
CLEANSTART-2026-DO31246
CLEANSTART-2026-DP35743
CLEANSTART-2026-EL10860
CLEANSTART-2026-FB07695
CLEANSTART-2026-FH54780
CLEANSTART-2026-FI29887
CLEANSTART-2026-FJ01373
CLEANSTART-2026-FN44356
CLEANSTART-2026-FU47971
CLEANSTART-2026-FX51482
CLEANSTART-2026-GB36430
CLEANSTART-2026-GE08280
CLEANSTART-2026-GI67088
CLEANSTART-2026-GM63718
CLEANSTART-2026-GM81143
CLEANSTART-2026-GR41888
CLEANSTART-2026-GU95761
CLEANSTART-2026-GY48351
CLEANSTART-2026-GZ35045
CLEANSTART-2026-GZ72045
CLEANSTART-2026-HA09227
CLEANSTART-2026-HB06257
CLEANSTART-2026-HJ72983
CLEANSTART-2026-HM31566
CLEANSTART-2026-HO21235
CLEANSTART-2026-HQ78610
CLEANSTART-2026-HU33730
CLEANSTART-2026-HX94762
CLEANSTART-2026-IW23933
CLEANSTART-2026-JB52011
CLEANSTART-2026-JJ84567
CLEANSTART-2026-JK38734
CLEANSTART-2026-JK84667
CLEANSTART-2026-JM96857
CLEANSTART-2026-JT73156
CLEANSTART-2026-JV26120
CLEANSTART-2026-KA21986
CLEANSTART-2026-KC83705
CLEANSTART-2026-KW35511
CLEANSTART-2026-KY75084
CLEANSTART-2026-LC01167
CLEANSTART-2026-LG79681
CLEANSTART-2026-LI04631
CLEANSTART-2026-LN66182
CLEANSTART-2026-LS00044
CLEANSTART-2026-LS12576
CLEANSTART-2026-LZ60917
CLEANSTART-2026-MF20926
CLEANSTART-2026-MI26424
CLEANSTART-2026-ML42911
CLEANSTART-2026-MQ21261
CLEANSTART-2026-MV81821
CLEANSTART-2026-MX15076
CLEANSTART-2026-NB55984
CLEANSTART-2026-NB78893
CLEANSTART-2026-NG75665
CLEANSTART-2026-NT10973
CLEANSTART-2026-NV78596
CLEANSTART-2026-NX54250
CLEANSTART-2026-OD56729
CLEANSTART-2026-OH43332
CLEANSTART-2026-OJ21550
CLEANSTART-2026-OL17158
CLEANSTART-2026-OL32822
CLEANSTART-2026-PK19530
CLEANSTART-2026-PP64690
CLEANSTART-2026-PS51260
CLEANSTART-2026-PV93827
CLEANSTART-2026-PV98664
CLEANSTART-2026-PW57640
CLEANSTART-2026-QA19540
CLEANSTART-2026-QO20135
CLEANSTART-2026-QO30809
CLEANSTART-2026-QR52625
CLEANSTART-2026-QU88766
CLEANSTART-2026-QV50101
CLEANSTART-2026-RA52239
CLEANSTART-2026-RD09851
CLEANSTART-2026-RM01950
CLEANSTART-2026-RR25843
CLEANSTART-2026-RX06063
CLEANSTART-2026-SE34232
CLEANSTART-2026-SF37618
CLEANSTART-2026-SQ18258
CLEANSTART-2026-SQ24713
CLEANSTART-2026-ST75560
CLEANSTART-2026-SU44499
CLEANSTART-2026-SV08737
CLEANSTART-2026-TC31671
CLEANSTART-2026-TD06078
CLEANSTART-2026-TF98824
CLEANSTART-2026-TH33219
CLEANSTART-2026-TI57220
CLEANSTART-2026-TL66481
CLEANSTART-2026-TO88856
CLEANSTART-2026-TZ10716
CLEANSTART-2026-TZ92532
CLEANSTART-2026-UF78567
CLEANSTART-2026-UG20989
CLEANSTART-2026-UG89030
CLEANSTART-2026-UI21589
CLEANSTART-2026-UK11127
CLEANSTART-2026-UM45661
CLEANSTART-2026-UO45926
CLEANSTART-2026-UQ00642
CLEANSTART-2026-UQ68343
CLEANSTART-2026-UW03847
CLEANSTART-2026-VN02574
CLEANSTART-2026-VU08393
CLEANSTART-2026-VU90450
CLEANSTART-2026-VX40916
CLEANSTART-2026-VZ35122
CLEANSTART-2026-VZ76006
CLEANSTART-2026-WA84208
CLEANSTART-2026-WI71304
CLEANSTART-2026-WK32717
CLEANSTART-2026-WL14185
CLEANSTART-2026-WN01990
CLEANSTART-2026-WO87803
CVE-2025-61726
ECHO-632E-FE3E-8680
GO-2026-4341
MGASA-2026-0035
OESA-2026-1698
OESA-2026-1699
OESA-2026-1700
OESA-2026-1701
OESA-2026-1702
OESA-2026-1703
OPENSUSE-SU-2026:10063-1
OPENSUSE-SU-2026:10064-1
OPENSUSE-SU-2026:20077-1
OPENSUSE-SU-2026:20085-1
OPENSUSE-SU-2026:20301-1
OPENSUSE-SU-2026:20308-1
OPENSUSE-SU-2026:20619-1
RHSA-2026:10096
RHSA-2026:11749
RHSA-2026:12028
RHSA-2026:12029
RHSA-2026:12030
RHSA-2026:12031
RHSA-2026:12032
RHSA-2026:12033
RHSA-2026:14868
RHSA-2026:16102
RHSA-2026:16696
RHSA-2026:17040
RHSA-2026:17084
RHSA-2026:18913
RHSA-2026:19013
RHSA-2026:19132
RHSA-2026:19634
RHSA-2026:22450
RHSA-2026:22714
RHSA-2026:22937
RHSA-2026:23228
RHSA-2026:25248
RHSA-2026:25250
RHSA-2026:25251
RHSA-2026:25252
RHSA-2026:25253
RHSA-2026:2706
RHSA-2026:2708
RHSA-2026:2709
RHSA-2026:2914
RHSA-2026:2920
RHSA-2026:3035
RHSA-2026:3040
RHSA-2026:3092
RHSA-2026:3187
RHSA-2026:3188
RHSA-2026:3192
RHSA-2026:3193
RHSA-2026:3291
RHSA-2026:3297
RHSA-2026:3298
RHSA-2026:3336
RHSA-2026:3337
RHSA-2026:3340
RHSA-2026:3341
RHSA-2026:3343
RHSA-2026:3391
RHSA-2026:3416
RHSA-2026:3468
RHSA-2026:3469
RHSA-2026:3470
RHSA-2026:3471
RHSA-2026:3472
RHSA-2026:3473
RHSA-2026:3489
RHSA-2026:3506
RHSA-2026:3668
RHSA-2026:3669
RHSA-2026:3699
RHSA-2026:3752
RHSA-2026:3753
RHSA-2026:3812
RHSA-2026:3813
RHSA-2026:3814
RHSA-2026:3815
RHSA-2026:3816
RHSA-2026:3817
RHSA-2026:3818
RHSA-2026:3820
RHSA-2026:3821
RHSA-2026:3822
RHSA-2026:3831
RHSA-2026:3833
RHSA-2026:3835
RHSA-2026:3836
RHSA-2026:3838
RHSA-2026:3839
RHSA-2026:3840
RHSA-2026:3841
RHSA-2026:3843
RHSA-2026:3854
RHSA-2026:3864
RHSA-2026:3875
RHSA-2026:3879
RHSA-2026:3880
RHSA-2026:3898
RHSA-2026:3928
RHSA-2026:3929
RHSA-2026:3930
RHSA-2026:3931
RHSA-2026:3932
RHSA-2026:3958
RHSA-2026:3959
RHSA-2026:3970
RHSA-2026:3971
RHSA-2026:3972
RHSA-2026:3973
RHSA-2026:3974
RHSA-2026:3977
RHSA-2026:3985
RHSA-2026:4164
RHSA-2026:4166
RHSA-2026:4174
RHSA-2026:4177
RHSA-2026:4211
RHSA-2026:4256
RHSA-2026:4264
RHSA-2026:4267
RHSA-2026:4460
RHSA-2026:4672
RHSA-2026:4753
RHSA-2026:4892
RHSA-2026:4901
RHSA-2026:4907
RHSA-2026:4952
RHSA-2026:5022
RHSA-2026:5030
RHSA-2026:5031
RHSA-2026:5076
RHSA-2026:5077
RHSA-2026:5078
RHSA-2026:5079
RHSA-2026:5145
RHSA-2026:5146
RHSA-2026:5327
RHSA-2026:5461
RHSA-2026:5533
RHSA-2026:5544
RHSA-2026:5852
RHSA-2026:5853
RHSA-2026:5968
RHSA-2026:6277
RHSA-2026:6278
RHSA-2026:7291
RHSA-2026:7385
RHSA-2026:7676
RHSA-2026:7854
RHSA-2026:9097
RHSA-2026:9098
RHSA-2026:9108
RHSA-2026:9109
SUSE-SU-2026:0218-1
SUSE-SU-2026:0219-1
SUSE-SU-2026:0296-1
SUSE-SU-2026:0297-1
SUSE-SU-2026:0298-1
SUSE-SU-2026:0308-1
SUSE-SU-2026:0354-1
SUSE-SU-2026:20122-1
SUSE-SU-2026:20132-1
SUSE-SU-2026:20623-1
SUSE-SU-2026:20629-1
Affected Products
Red Os
Rocky Linux
Net/Url
References · 997
- https://errata.rockylinux.org/RLSA-2026:3298 · Vendor Advisory
- https://osv.dev/vulnerability/CLEANSTART-2026-CC08450 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-33186 · Security Note
- https://osv.dev/vulnerability/CLEANSTART-2026-SV08737 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-25500 · Security Note
- https://cve.org/CVERecord?id=CVE-2025-61726 · Security Note
- https://nvd.nist.gov/vuln/detail/CVE-2026-39823 · Security Note
- https://errata.almalinux.org/10/ALSA-2026-3864.html · Vendor Advisory
- https://osv.dev/vulnerability/CLEANSTART-2026-MQ21261 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-23992 · Security Note
- https://nvd.nist.gov/vuln/detail/CVE-2026-35172 · Security Note
- https://nvd.nist.gov/vuln/detail/CVE-2024-7598 · Security Note
- https://errata.almalinux.org/9/ALSA-2026-3341.html · Vendor Advisory
- https://errata.rockylinux.org/RLSA-2026:3188 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-24117 · Security Note