VULNRABLE / Vulnerability / GO-2026-5932

GO-2026-5932

UNKNOWN LOW golang.org/x/crypto OSV

Exploit verdict: No active-exploit signal

CVSS Score
Severity
UNKNOWN
EPSS
Source
OSV

Summary

The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues

What this means

GO-2026-5932 is a unknown-severity vulnerability affecting golang.org/x/crypto. Published July 8, 2026.

View full advisory at OSV →