pkg:Go/github.com/nats-io/nats-server
共 34 筆 CVECRITICAL2HIGH15MEDIUM16
✅ 檢查你的版本
所有已知漏洞
- CRITICAL9.8CVE-2022-28357NATS nats-server allows directory traversal via unintended path to a management action in github.com/nats-io/nats-serverfrom 0
- CRITICAL9.8CVE-2022-28357NATS nats-server allows directory traversal via unintended path to a management action in github.com/nats-io/nats-server>= 2.2.0, < 2.7.4
- from 0
- from 0
- from 0
- HIGH7.5CVE-2026-27889NATS: Pre-auth remote server crash via WebSocket frame length overflow in wsReadfrom 0
- HIGH7.5CVE-2026-27889NATS: Pre-auth remote server crash via WebSocket frame length overflow in wsReadfrom 0
- from 0
- from 0
- HIGH7.5CVE-2026-29785NATS Server panic via malicious compression on leafnode port in github.com/nats-io/nats-serverfrom 0
- HIGH7.5CVE-2026-29785NATS Server panic via malicious compression on leafnode port in github.com/nats-io/nats-serverfrom 0
- from 0
- from 0, < 2.2.0
- from 0
- from 0
- from 0
- from 0
- from 0
- MEDIUM6.5CVE-2022-29946NATS Server and Streaming Server fails to enforce negative user permissions, may allow denied subjects in github.com/nats-io/nats-serverfrom 0
- from 0
- MEDIUM6.4CVE-2026-33246NATS: Leafnode connections allow spoofing of Nats-Request-Info identity headersfrom 0
- MEDIUM6.4CVE-2026-33246NATS: Leafnode connections allow spoofing of Nats-Request-Info identity headersfrom 0
- MEDIUM6.4CVE-2026-33223NATS Server: Incomplete Stripping of Nats-Request-Info Header Allows Identity Spoofingfrom 0
- MEDIUM6.4CVE-2026-33223NATS Server: Incomplete Stripping of Nats-Request-Info Header Allows Identity Spoofingfrom 0
- from 0, <= 1.4.1
- from 0
- from 0
- from 0
- from 0
- from 0
- from 0
- MEDIUM4.2CVE-2026-33248NATS has mTLS verify_and_map authentication bypass via incorrect Subject DN matchingfrom 0
- MEDIUM4.2CVE-2026-33248NATS has mTLS verify_and_map authentication bypass via incorrect Subject DN matchingfrom 0
- —CVE-2021-32026NATS server TLS missing ciphersuite settings when CLI flags used in github.com/nats-io/nats-serverfrom 0