[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-6574":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T20:55:29.923Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":62,"aliases":72,"duplicate_of":9,"upstream":74,"downstream":75,"duplicates":104,"related":105,"reserved_at":9,"published_at":116,"modified_at":117,"state":118,"summary":119,"references_raw":126,"kevs":180,"epss":181,"epss_history":184,"metrics":426,"affected":436},"CVE-2018-6574","Go before 1.8.7, Go 1.9.x before 1.9.4, and Go 1.10 pre-releases before Go 1.10rc2 allow \"go get\" remote command execution during source code build, by leveraging the gcc or clang plugin feature, because -fplugin= and -plugin= arguments were not blocked.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-94","Improper Control of Generation of Code ('Code Injection')","The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.","weakness","Draft","Base","Medium",[20,24,58],{"id":21,"name":22,"techniques":23},"CAPEC-242","Code Injection",[],{"id":25,"name":26,"techniques":27},"CAPEC-35","Leverage Executable Code in Non-Executable Files",[28,39,46],{"id":29,"name":30,"tactics":31,"countermeasures":38},"T1027.006","HTML Smuggling",[32,35],{"id":33,"name":34},"TA0030","Defense Evasion",{"id":36,"name":37},"TA0005","Stealth",[],{"id":40,"name":41,"tactics":42,"countermeasures":45},"T1027.009","Embedded Payloads",[43,44],{"id":33,"name":34},{"id":36,"name":37},[],{"id":47,"name":48,"tactics":49,"countermeasures":52},"T1564.009","Resource Forking",[50,51],{"id":33,"name":34},{"id":36,"name":37},[53],{"id":54,"name":55,"tactic":56},"D3-FFV","File Format Verification",{"name":57},"Isolate",{"id":59,"name":60,"techniques":61},"CAPEC-77","Manipulating User-Controlled Variables",[],[63],{"_key":64,"name":65,"source":66,"url":67,"maturity":68,"reliability_score":69,"verified":70,"type":9,"platforms":71,"requires_auth":9,"exploitdb":9,"metasploit":9},"GITHUB_KINGSABRI_CVE-IN-RUBY","Cve In Ruby","github","https://github.com/KINGSABRI/CVE-in-Ruby/tree/master/CVE-2018-0833","poc",0.3,false,[],[73],"GO-2022-0201",[],[76,78,80,82,84,86,88,90,92,94,96,98,100,102],{"_key":77},"OPENSUSE-SU-2018:0589-1",{"_key":79},"RHSA-2018:1304",{"_key":81},"UBUNTU-CVE-2018-6574",{"_key":83},"OPENSUSE-SU-2024:10802-1",{"_key":85},"OPENSUSE-SU-2018:0588-1",{"_key":87},"OPENSUSE-SU-2018:0628-1",{"_key":89},"OPENSUSE-SU-2018:0629-1",{"_key":91},"OPENSUSE-SU-2024:10803-1",{"_key":93},"OPENSUSE-SU-2024:10804-1",{"_key":95},"OPENSUSE-SU-2024:10805-1",{"_key":97},"OPENSUSE-SU-2024:10812-1",{"_key":99},"DSA-4380-1",{"_key":101},"MGASA-2018-0144",{"_key":103},"RHSA-2018:0878",[],[106,107,108,109,110,111,112,113,114,115],{"_key":77},{"_key":83},{"_key":85},{"_key":87},{"_key":89},{"_key":91},{"_key":93},{"_key":95},{"_key":97},{"_key":101},"2018-02-07T21:00:00.000Z","2024-08-05T06:10:10.226Z","Modified",{"cisa_kev":70,"cisa_ransomware":70,"cisa_vendor":9,"epss_severity":120,"epss_score":121,"severity":120,"severity_score":122,"severity_version":123,"severity_source":124,"severity_vector":125,"severity_status":118},"high",0.36789,7.8,"v3.0","nvd","CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[127,135,139,144,150,155,160,164,170,175],{"url":128,"sources":129,"tags":131},"https://access.redhat.com/errata/RHSA-2018:1304",[130,124],"cve.org",[132,133,134],"Vendor Advisory","X Refsource REDHAT","Third Party Advisory",{"url":136,"sources":137,"tags":138},"https://access.redhat.com/errata/RHSA-2018:0878",[130,124],[132,133,134],{"url":140,"sources":141,"tags":142},"https://www.debian.org/security/2019/dsa-4380",[130,124],[132,143,134],"X Refsource DEBIAN",{"url":145,"sources":146,"tags":147},"https://github.com/KINGSABRI/CVE-in-Ruby/tree/master/CVE-2018-6574",[130,124],[148,149,134],"X Refsource MISC","Exploit",{"url":151,"sources":152,"tags":153},"https://groups.google.com/forum/#%21topic/golang-nuts/sprOaQ5m3Dk",[130,124],[154],"X Refsource CONFIRM",{"url":156,"sources":157,"tags":158},"https://github.com/golang/go/issues/23672",[130,124],[154,159,134],"Issue Tracking",{"url":161,"sources":162,"tags":163},"https://groups.google.com/forum/#%21topic/golang-nuts/Gbhh1NxAjMU",[130,124],[154],{"url":165,"sources":166,"tags":168},"https://go.googlesource.com/go/+/1dcb5836ad2c60776561da2923c70576ba2eefc6",[167],"osv_go",[169],"FIX",{"url":171,"sources":172,"tags":173},"https://go.dev/issue/23672",[167],[174],"REPORT",{"url":176,"sources":177,"tags":178},"https://groups.google.com/g/golang-nuts/c/Gbhh1NxAjMU",[167],[179],"WEB",[],{"date":182,"score":121,"percentile":183},"2026-06-04",0.97231,[185,189,192,195,198,201,203,205,207,210,213,216,218,220,223,227,230,233,236,238,240,243,245,248,251,253,256,258,261,263,266,268,270,273,275,277,280,283,286,288,291,294,297,299,302,305,308,311,313,315,317,320,323,325,328,331,333,336,339,342,345,348,351,354,356,358,361,364,367,369,371,374,377,380,383,385,387,390,392,394,397,400,404,407,410,413,415,418,421,423],{"date":186,"score":187,"percentile":188},"2025-11-04",0.34983,0.96826,{"date":190,"score":121,"percentile":191},"2025-11-05",0.9695,{"date":193,"score":121,"percentile":194},"2025-11-06",0.96951,{"date":196,"score":121,"percentile":197},"2025-11-07",0.96954,{"date":199,"score":121,"percentile":200},"2025-11-08",0.96953,{"date":202,"score":121,"percentile":194},"2025-11-09",{"date":204,"score":121,"percentile":191},"2025-11-10",{"date":206,"score":121,"percentile":200},"2025-11-11",{"date":208,"score":121,"percentile":209},"2025-11-12",0.96955,{"date":211,"score":121,"percentile":212},"2025-11-13",0.96956,{"date":214,"score":121,"percentile":215},"2025-11-14",0.96958,{"date":217,"score":121,"percentile":212},"2025-11-15",{"date":219,"score":121,"percentile":212},"2025-11-16",{"date":221,"score":121,"percentile":222},"2025-11-17",0.96957,{"date":224,"score":225,"percentile":226},"2025-11-18",0.34414,0.96762,{"date":228,"score":225,"percentile":229},"2025-11-19",0.96763,{"date":231,"score":225,"percentile":232},"2025-11-20",0.96766,{"date":234,"score":121,"percentile":235},"2025-11-21",0.9696,{"date":237,"score":121,"percentile":222},"2025-11-22",{"date":239,"score":121,"percentile":212},"2025-11-23",{"date":241,"score":121,"percentile":242},"2025-11-24",0.96959,{"date":244,"score":121,"percentile":235},"2025-11-25",{"date":246,"score":121,"percentile":247},"2025-11-26",0.96961,{"date":249,"score":121,"percentile":250},"2025-11-27",0.96963,{"date":252,"score":121,"percentile":247},"2025-11-28",{"date":254,"score":121,"percentile":255},"2025-11-29",0.96962,{"date":257,"score":121,"percentile":235},"2025-11-30",{"date":259,"score":121,"percentile":260},"2025-12-01",0.96984,{"date":262,"score":121,"percentile":260},"2025-12-02",{"date":264,"score":121,"percentile":265},"2025-12-03",0.96986,{"date":267,"score":121,"percentile":255},"2025-12-04",{"date":269,"score":121,"percentile":250},"2025-12-05",{"date":271,"score":121,"percentile":272},"2025-12-06",0.96964,{"date":274,"score":121,"percentile":272},"2025-12-07",{"date":276,"score":121,"percentile":272},"2025-12-08",{"date":278,"score":121,"percentile":279},"2025-12-09",0.96965,{"date":281,"score":121,"percentile":282},"2025-12-10",0.96972,{"date":284,"score":121,"percentile":285},"2025-12-11",0.96974,{"date":287,"score":121,"percentile":285},"2025-12-12",{"date":289,"score":121,"percentile":290},"2025-12-13",0.96977,{"date":292,"score":121,"percentile":293},"2025-12-14",0.96973,{"date":295,"score":121,"percentile":296},"2025-12-15",0.96975,{"date":298,"score":121,"percentile":290},"2025-12-16",{"date":300,"score":121,"percentile":301},"2025-12-17",0.9698,{"date":303,"score":121,"percentile":304},"2025-12-18",0.96981,{"date":306,"score":121,"percentile":307},"2025-12-19",0.96982,{"date":309,"score":121,"percentile":310},"2025-12-20",0.96983,{"date":312,"score":121,"percentile":310},"2025-12-21",{"date":314,"score":121,"percentile":310},"2025-12-22",{"date":316,"score":121,"percentile":260},"2025-12-23",{"date":318,"score":121,"percentile":319},"2025-12-24",0.96987,{"date":321,"score":121,"percentile":322},"2025-12-25",0.96992,{"date":324,"score":121,"percentile":322},"2025-12-26",{"date":326,"score":121,"percentile":327},"2025-12-27",0.97014,{"date":329,"score":121,"percentile":330},"2025-12-28",0.96991,{"date":332,"score":121,"percentile":322},"2025-12-29",{"date":334,"score":121,"percentile":335},"2025-12-30",0.96993,{"date":337,"score":121,"percentile":338},"2025-12-31",0.96997,{"date":340,"score":121,"percentile":341},"2026-01-01",0.97025,{"date":343,"score":121,"percentile":344},"2026-01-02",0.97026,{"date":346,"score":121,"percentile":347},"2026-01-03",0.97027,{"date":349,"score":121,"percentile":350},"2026-01-04",0.96998,{"date":352,"score":121,"percentile":353},"2026-01-05",0.97,{"date":355,"score":121,"percentile":353},"2026-01-06",{"date":357,"score":121,"percentile":353},"2026-01-07",{"date":359,"score":121,"percentile":360},"2026-01-08",0.97001,{"date":362,"score":121,"percentile":363},"2026-01-09",0.97003,{"date":365,"score":121,"percentile":366},"2026-01-10",0.97004,{"date":368,"score":121,"percentile":366},"2026-01-11",{"date":370,"score":121,"percentile":366},"2026-01-12",{"date":372,"score":121,"percentile":373},"2026-01-13",0.97005,{"date":375,"score":121,"percentile":376},"2026-01-14",0.97008,{"date":378,"score":121,"percentile":379},"2026-01-15",0.97009,{"date":381,"score":121,"percentile":382},"2026-01-16",0.97013,{"date":384,"score":121,"percentile":327},"2026-01-17",{"date":386,"score":121,"percentile":382},"2026-01-18",{"date":388,"score":121,"percentile":389},"2026-01-19",0.97012,{"date":391,"score":121,"percentile":327},"2026-01-20",{"date":393,"score":121,"percentile":382},"2026-01-21",{"date":395,"score":121,"percentile":396},"2026-01-22",0.97015,{"date":398,"score":121,"percentile":399},"2026-01-23",0.97019,{"date":401,"score":402,"percentile":403},"2026-01-24",0.37382,0.97061,{"date":405,"score":402,"percentile":406},"2026-01-25",0.97063,{"date":408,"score":402,"percentile":409},"2026-01-26",0.97065,{"date":411,"score":402,"percentile":412},"2026-01-27",0.97064,{"date":414,"score":402,"percentile":409},"2026-01-28",{"date":416,"score":402,"percentile":417},"2026-01-29",0.97069,{"date":419,"score":402,"percentile":420},"2026-01-30",0.97068,{"date":422,"score":402,"percentile":420},"2026-01-31",{"date":424,"score":402,"percentile":425},"2026-02-01",0.97092,[427],{"source":124,"cvss_v2_0":428,"cvss_v3_0":433,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":429,"baseSeverity":9,"vectorString":430,"impactScore":431,"exploitabilityScore":432},4.6,"AV:L/AC:L/Au:N/C:P/I:P/A:P",6.4,3.9,{"baseScore":122,"baseSeverity":434,"vectorString":125,"impactScore":435,"exploitabilityScore":429},"HIGH",9.8,[437,446,470,480,487,493,498],{"ecosystem":9,"name":438,"vendor":439,"product":440,"cpe_part":441,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":442},"debian linux","debian","debian_linux","o",[443],{"version":444,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0","cpe",{"ecosystem":9,"name":447,"vendor":448,"product":447,"cpe_part":449,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":450},"go","golang","a",[451,456,458,460,462,464,466,468],{"version":452,"is_range":453,"range_type":445,"version_start":9,"version_start_type":9,"version_end":454,"version_end_type":455,"fixed_in":9},"lte1.8.6",true,"1.8.6","including",{"version":457,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.9",{"version":459,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.9.1",{"version":461,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.9.2",{"version":463,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.9.3",{"version":465,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.10:beta1",{"version":467,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.10:beta2",{"version":469,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.10:rc1",{"ecosystem":471,"name":472,"vendor":471,"product":472,"cpe_part":9,"purl_type":448,"purl_namespace":9,"purl_name":472,"source":9,"versions":473},"Go","toolchain",[474],{"version":475,"is_range":453,"range_type":476,"version_start":477,"version_start_type":455,"version_end":478,"version_end_type":479,"fixed_in":9},"gte1_9_0_0_lt1_9_4","semver","1.9.0-0","1.9.4","excluding",{"ecosystem":9,"name":481,"vendor":482,"product":483,"cpe_part":441,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":484},"enterprise linux server","redhat","enterprise_linux_server",[485],{"version":486,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"ecosystem":9,"name":488,"vendor":482,"product":489,"cpe_part":441,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":490},"enterprise linux server aus","enterprise_linux_server_aus",[491],{"version":492,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.6",{"ecosystem":9,"name":494,"vendor":482,"product":495,"cpe_part":441,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":496},"enterprise linux server eus","enterprise_linux_server_eus",[497],{"version":492,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":499,"vendor":482,"product":500,"cpe_part":441,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":501},"enterprise linux server tus","enterprise_linux_server_tus",[502],{"version":492,"is_range":70,"range_type":445,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9}]