Unrated severityNVD Advisory· Published Feb 5, 2026· Updated Feb 12, 2026
Infinite parsing loop in golang.org/x/net
CVE-2025-58190
Description
The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.
Affected products
2- golang.org/x/net/golang.org/x/net/htmlv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.