rpm package
opensuse/vlang&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/vlang&distro=openSUSE%20Tumbleweed
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-67201 | Hig | 8.6 | < 0.5.2-2.1 | 0.5.2-2.1 | Jul 29, 2026 | V through 0.5.2, fixed in commit 85859f0, contains a server-side request forgery (SSRF) bypass vulnerability that allows attackers to circumvent host-based allowlists by exploiting a parser differential between net.urllib and net.http. Attackers can craft a URL containing a backs | |
| CVE-2025-59438 | Med | 5.3 | < 0.5-2.1 | 0.5-2.1 | Oct 21, 2025 | Mbed TLS through 3.6.4 has an Observable Timing Discrepancy. |
- affected < 0.5.2-2.1fixed 0.5.2-2.1
V through 0.5.2, fixed in commit 85859f0, contains a server-side request forgery (SSRF) bypass vulnerability that allows attackers to circumvent host-based allowlists by exploiting a parser differential between net.urllib and net.http. Attackers can craft a URL containing a backs
- affected < 0.5-2.1fixed 0.5-2.1
Mbed TLS through 3.6.4 has an Observable Timing Discrepancy.