Lucene search

K
cvelistMitreCVELIST:CVE-2021-3115
HistoryJan 26, 2021 - 2:14 a.m.

CVE-2021-3115

2021-01-2602:14:51
mitre
www.cve.org

8.4 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

88.0%

Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to Command Injection and remote code execution when using the “go get” command to fetch modules that make use of cgo (for example, cgo can execute a gcc program from an untrusted download).