{"schema_version":1,"title":"github.com/ethereum/go-ethereum (Go) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 27 vulnerabilities in github.com/ethereum/go-ethereum (Go): 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-26313, was published on 24 February 2026.","url":"https://junglewise.ai/threats/technologies/github-com-ethereum-go-ethereum","json_url":"https://junglewise.ai/threats/technologies/github-com-ethereum-go-ethereum.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/github-com-ethereum-go-ethereum","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":1,"all_time":27,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":5},"latest":[{"cve":"CVE-2026-26313","cvss":4,"epss":0.0062,"slug":"cve-2026-26313-go-ethereum-affected-by-dos-via-malicious-p2p-message","title":"GO-2026-4508 - Go Ethereum affected by DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26313-go-ethereum-affected-by-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-26315","cvss":4,"epss":0.0053,"slug":"cve-2026-26315-go-ethereum-improperly-validates-the-ecies-public-key-in-rlpx","title":"GO-2026-4511 - Go Ethereum Improperly Validates the ECIES Public Key in RLPx Handshake in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26315-go-ethereum-improperly-validates-the-ecies-public-key-in-rlpx"},{"cve":"CVE-2026-26314","cvss":4,"epss":0.0076,"slug":"cve-2026-26314-go-ethereum-affected-by-dos-via-malicious-p2p-message","title":"GO-2026-4507 - Go Ethereum affected by crash via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26314-go-ethereum-affected-by-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-22862","cvss":4,"epss":0.0071,"slug":"cve-2026-22862-go-ethereum-is-vulnerable-to-dos-via-malicious-p2p-message","title":"GO-2026-4315 - DoS via malicious p2p message affecting a vulnerable node in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-01-23T02:28:11+00:00","url":"https://junglewise.ai/threats/cve-2026-22862-go-ethereum-is-vulnerable-to-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-22868","cvss":4,"epss":0.0063,"slug":"cve-2026-22868-go-ethereum-is-vulnerable-to-high-cpu-usage-leading-to-dos-via","title":"GO-2026-4314 - High CPU usage leading to DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-01-23T02:28:11+00:00","url":"https://junglewise.ai/threats/cve-2026-22868-go-ethereum-is-vulnerable-to-high-cpu-usage-leading-to-dos-via"},{"cve":"CVE-2025-24883","cvss":4,"epss":0.0069,"slug":"cve-2025-24883-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message","title":"GO-2025-3436 - Go Ethereum vulnerable to DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2025-02-04T22:06:11+00:00","url":"https://junglewise.ai/threats/cve-2025-24883-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message"},{"cve":"CVE-2018-16733","cvss":3.1,"epss":0.0122,"slug":"cve-2018-16733-go-ethereum-improper-input-validation","title":"GO-2022-0871 - Go Ethereum Improper Input Validation in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:29:06+00:00","url":"https://junglewise.ai/threats/cve-2018-16733-go-ethereum-improper-input-validation"},{"cve":"CVE-2018-19184","cvss":3,"epss":0.0147,"slug":"cve-2018-19184-go-ethereum-denial-of-service","title":"GO-2022-0814 - Go Ethereum Denial of Service in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:29:02+00:00","url":"https://junglewise.ai/threats/cve-2018-19184-go-ethereum-denial-of-service"},{"cve":"CVE-2020-26241","cvss":3.1,"epss":0.0123,"slug":"cve-2020-26241-shallow-copy-bug-in-geth","title":"GO-2022-0771 - Shallow copy bug in geth in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:28:59+00:00","url":"https://junglewise.ai/threats/cve-2020-26241-shallow-copy-bug-in-geth"},{"cve":"CVE-2020-26240","cvss":3.1,"epss":0.0186,"slug":"cve-2020-26240-erroneous-proof-of-work-calculation-in-geth","title":"GO-2022-0775 - Erroneous Proof of Work calculation in geth in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:28:59+00:00","url":"https://junglewise.ai/threats/cve-2020-26240-erroneous-proof-of-work-calculation-in-geth"},{"cve":"CVE-2022-29177","cvss":3.1,"epss":0.0114,"slug":"cve-2022-29177-dos-via-malicious-p2p-message-in-go-ethereum","title":"GO-2022-0456 - DoS via malicious p2p message in Go Ethereum in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:11:31+00:00","url":"https://junglewise.ai/threats/cve-2022-29177-dos-via-malicious-p2p-message-in-go-ethereum"},{"slug":"go-2022-0392-denial-of-service-in-go-ethereum-due-to-in-github-com-ac2f02ca","title":"GO-2022-0392 - Denial of service in go-ethereum due to in github.com/ethereum/go-ethereum","severity":"info","exploited":false,"published_at":"2024-08-21T14:30:31+00:00","url":"https://junglewise.ai/threats/go-2022-0392-denial-of-service-in-go-ethereum-due-to-in-github-com-ac2f02ca"},{"cve":"CVE-2024-32972","cvss":3.1,"epss":0.0085,"slug":"cve-2024-32972-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message","title":"GO-2024-2819 - Denial of Service in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-05-08T23:23:56+00:00","url":"https://junglewise.ai/threats/cve-2024-32972-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message"},{"cve":"CVE-2023-40591","cvss":3.1,"epss":0.0112,"slug":"cve-2023-40591-go-ethereum-vulnerable-to-denial-of-service-via-malicious-p2p","title":"GO-2023-2046 - Unbounded memory consumption in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2023-10-25T18:06:33+00:00","url":"https://junglewise.ai/threats/cve-2023-40591-go-ethereum-vulnerable-to-denial-of-service-via-malicious-p2p"},{"cve":"CVE-2023-42319","cvss":3.1,"epss":0.0089,"slug":"cve-2023-42319-go-ethereum-vulnerable-to-denial-of-service-via-crafted-graphql","title":"go-ethereum vulnerable to denial of service via crafted GraphQL query","severity":"low","exploited":false,"published_at":"2023-10-18T06:30:30+00:00","url":"https://junglewise.ai/threats/cve-2023-42319-go-ethereum-vulnerable-to-denial-of-service-via-crafted-graphql"},{"cve":"CVE-2022-37450","cvss":3.1,"epss":0.0121,"slug":"cve-2022-37450-go-ethereum-allows-attackers-to-use-manipulation-of-time","title":"Go Ethereum allows attackers to use manipulation of time-difference values to achieve replacement of main-chain blocks","severity":"low","exploited":false,"published_at":"2022-08-06T00:00:36+00:00","url":"https://junglewise.ai/threats/cve-2022-37450-go-ethereum-allows-attackers-to-use-manipulation-of-time"},{"cve":"CVE-2021-41173","cvss":3.1,"epss":0.0124,"slug":"cve-2021-41173-geth-node-vulnerable-to-dos-via-maliciously-crafted-p2p-message","title":"GO-2022-0256 - Panic via maliciously crafted message in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2022-07-15T23:08:03+00:00","url":"https://junglewise.ai/threats/cve-2021-41173-geth-node-vulnerable-to-dos-via-maliciously-crafted-p2p-message"},{"cve":"CVE-2021-39137","cvss":3.1,"epss":0.0133,"slug":"cve-2021-39137-ethereum-contains-consensus-flaw-during-block-processing","title":"GO-2022-0254 - Consensus flaw during block processing in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2022-07-15T23:07:56+00:00","url":"https://junglewise.ai/threats/cve-2021-39137-ethereum-contains-consensus-flaw-during-block-processing"},{"cve":"CVE-2021-42219","cvss":3.1,"epss":0.012,"slug":"cve-2021-42219-denial-of-service-in-go-ethereum","title":"Denial of service in go-ethereum","severity":"low","exploited":false,"published_at":"2022-03-18T00:01:13+00:00","url":"https://junglewise.ai/threats/cve-2021-42219-denial-of-service-in-go-ethereum"},{"cve":"CVE-2022-23327","cvss":7.5,"epss":0.0137,"slug":"cve-2022-23327-go-ethereum-denial-of-service-via-mempool-transaction-flood","title":"Go-Ethereum denial of service via mempool transaction flood","severity":"high","exploited":false,"published_at":"2022-03-05T00:00:46+00:00","url":"https://junglewise.ai/threats/cve-2022-23327-go-ethereum-denial-of-service-via-mempool-transaction-flood"},{"cve":"CVE-2022-23328","cvss":3.1,"epss":0.0137,"slug":"cve-2022-23328-denial-of-service-in-go-ethereum","title":"Denial of Service in Go-Ethereum","severity":"low","exploited":false,"published_at":"2022-03-05T00:00:46+00:00","url":"https://junglewise.ai/threats/cve-2022-23328-denial-of-service-in-go-ethereum"},{"cve":"CVE-2021-43668","cvss":3.1,"epss":0.0026,"slug":"cve-2021-43668-denial-of-service-in-go-ethereum","title":"Denial of Service in Go-Ethereum","severity":"low","exploited":false,"published_at":"2021-11-23T18:04:47+00:00","url":"https://junglewise.ai/threats/cve-2021-43668-denial-of-service-in-go-ethereum"},{"cve":"CVE-2020-26242","cvss":3.1,"epss":0.0148,"slug":"cve-2020-26242-denial-of-service-in-geth","title":"GO-2021-0103 - Denial of service in github.com/holiman/uint256","severity":"low","exploited":false,"published_at":"2021-07-28T18:08:05+00:00","url":"https://junglewise.ai/threats/cve-2020-26242-denial-of-service-in-geth"},{"cve":"CVE-2020-26265","cvss":3.1,"epss":0.0092,"slug":"cve-2020-26265-consensus-flaw-during-block-processing-in-github-com-ethereum-go","title":"GO-2021-0105 - Consensus flaw in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2021-07-28T18:08:05+00:00","url":"https://junglewise.ai/threats/cve-2020-26265-consensus-flaw-during-block-processing-in-github-com-ethereum-go"},{"slug":"denial-of-service-in-go-ethereum-due-to-23b3b9a0","title":"Denial of service in go-ethereum due to","severity":"info","exploited":false,"published_at":"2021-06-29T21:13:54+00:00","url":"https://junglewise.ai/threats/denial-of-service-in-go-ethereum-due-to-23b3b9a0"}],"weekly":[{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-28","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"github.com/mattermost/mattermost-server (Go)","slug":"github-com-mattermost-mattermost-server","vulnerabilities":274,"url":"https://junglewise.ai/threats/technologies/github-com-mattermost-mattermost-server"},{"name":"github.com/mattermost/mattermost-server/v6 (Go)","slug":"github-com-mattermost-mattermost-server-v6","vulnerabilities":188,"url":"https://junglewise.ai/threats/technologies/github-com-mattermost-mattermost-server-v6"},{"name":"github.com/mattermost/mattermost-server/v5 (Go)","slug":"github-com-mattermost-mattermost-server-v5","vulnerabilities":186,"url":"https://junglewise.ai/threats/technologies/github-com-mattermost-mattermost-server-v5"},{"name":"github.com/mattermost/mattermost/server/v8 (Go)","slug":"github-com-mattermost-mattermost-server-v8","vulnerabilities":182,"url":"https://junglewise.ai/threats/technologies/github-com-mattermost-mattermost-server-v8"},{"name":"stdlib (Go)","slug":"go-stdlib","vulnerabilities":161,"url":"https://junglewise.ai/threats/technologies/go-stdlib"},{"name":"github.com/siyuan-note/siyuan/kernel (Go)","slug":"github-com-siyuan-note-siyuan-kernel","vulnerabilities":158,"url":"https://junglewise.ai/threats/technologies/github-com-siyuan-note-siyuan-kernel"},{"name":"code.gitea.io/gitea (Go)","slug":"code-gitea-io-gitea","vulnerabilities":128,"url":"https://junglewise.ai/threats/technologies/code-gitea-io-gitea"},{"name":"gogs.io/gogs (Go)","slug":"gogs-io-gogs","vulnerabilities":82,"url":"https://junglewise.ai/threats/technologies/gogs-io-gogs"},{"name":"github.com/traefik/traefik (Go)","slug":"github-com-traefik-traefik","vulnerabilities":75,"url":"https://junglewise.ai/threats/technologies/github-com-traefik-traefik"},{"name":"github.com/usememos/memos (Go)","slug":"github-com-usememos-memos","vulnerabilities":75,"url":"https://junglewise.ai/threats/technologies/github-com-usememos-memos"},{"name":"github.com/traefik/traefik/v2 (Go)","slug":"github-com-traefik-traefik-v2","vulnerabilities":73,"url":"https://junglewise.ai/threats/technologies/github-com-traefik-traefik-v2"},{"name":"github.com/traefik/traefik/v3 (Go)","slug":"github-com-traefik-traefik-v3","vulnerabilities":68,"url":"https://junglewise.ai/threats/technologies/github-com-traefik-traefik-v3"}],"technology":{"hub":true,"name":"github.com/ethereum/go-ethereum (Go)","slug":"github-com-ethereum-go-ethereum","vendor":{"name":"Go","slug":"go","url":"https://junglewise.ai/threats/vendors/go"},"aliases":[],"homepage":"https://geth.ethereum.org","repo_url":"https://github.com/ethereum/go-ethereum","description":"Go implementation of the Ethereum protocol for blockchain networks.","url":"https://junglewise.ai/threats/technologies/github-com-ethereum-go-ethereum"},"most_severe":[{"cve":"CVE-2022-23327","cvss":7.5,"epss":0.0137,"slug":"cve-2022-23327-go-ethereum-denial-of-service-via-mempool-transaction-flood","title":"Go-Ethereum denial of service via mempool transaction flood","severity":"high","exploited":false,"published_at":"2022-03-05T00:00:46+00:00","url":"https://junglewise.ai/threats/cve-2022-23327-go-ethereum-denial-of-service-via-mempool-transaction-flood"},{"cve":"CVE-2026-26314","cvss":4,"epss":0.0076,"slug":"cve-2026-26314-go-ethereum-affected-by-dos-via-malicious-p2p-message","title":"GO-2026-4507 - Go Ethereum affected by crash via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26314-go-ethereum-affected-by-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-22862","cvss":4,"epss":0.0071,"slug":"cve-2026-22862-go-ethereum-is-vulnerable-to-dos-via-malicious-p2p-message","title":"GO-2026-4315 - DoS via malicious p2p message affecting a vulnerable node in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-01-23T02:28:11+00:00","url":"https://junglewise.ai/threats/cve-2026-22862-go-ethereum-is-vulnerable-to-dos-via-malicious-p2p-message"},{"cve":"CVE-2025-24883","cvss":4,"epss":0.0069,"slug":"cve-2025-24883-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message","title":"GO-2025-3436 - Go Ethereum vulnerable to DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2025-02-04T22:06:11+00:00","url":"https://junglewise.ai/threats/cve-2025-24883-go-ethereum-vulnerable-to-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-22868","cvss":4,"epss":0.0063,"slug":"cve-2026-22868-go-ethereum-is-vulnerable-to-high-cpu-usage-leading-to-dos-via","title":"GO-2026-4314 - High CPU usage leading to DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-01-23T02:28:11+00:00","url":"https://junglewise.ai/threats/cve-2026-22868-go-ethereum-is-vulnerable-to-high-cpu-usage-leading-to-dos-via"},{"cve":"CVE-2026-26313","cvss":4,"epss":0.0062,"slug":"cve-2026-26313-go-ethereum-affected-by-dos-via-malicious-p2p-message","title":"GO-2026-4508 - Go Ethereum affected by DoS via malicious p2p message in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26313-go-ethereum-affected-by-dos-via-malicious-p2p-message"},{"cve":"CVE-2026-26315","cvss":4,"epss":0.0053,"slug":"cve-2026-26315-go-ethereum-improperly-validates-the-ecies-public-key-in-rlpx","title":"GO-2026-4511 - Go Ethereum Improperly Validates the ECIES Public Key in RLPx Handshake in github.com/ethereum/go-ethereum","severity":"medium","exploited":false,"published_at":"2026-02-24T23:10:26+00:00","url":"https://junglewise.ai/threats/cve-2026-26315-go-ethereum-improperly-validates-the-ecies-public-key-in-rlpx"},{"cve":"CVE-2020-26264","cvss":3.1,"epss":0.0189,"slug":"cve-2020-26264-denial-of-service-in-github-com-ethereum-go-ethereum","title":"GO-2021-0063 - Nil pointer dereference via malicious RPC message in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2021-04-14T20:04:52+00:00","url":"https://junglewise.ai/threats/cve-2020-26264-denial-of-service-in-github-com-ethereum-go-ethereum"},{"cve":"CVE-2020-26240","cvss":3.1,"epss":0.0186,"slug":"cve-2020-26240-erroneous-proof-of-work-calculation-in-geth","title":"GO-2022-0775 - Erroneous Proof of Work calculation in geth in github.com/ethereum/go-ethereum","severity":"low","exploited":false,"published_at":"2024-08-21T15:28:59+00:00","url":"https://junglewise.ai/threats/cve-2020-26240-erroneous-proof-of-work-calculation-in-geth"},{"cve":"CVE-2020-26242","cvss":3.1,"epss":0.0148,"slug":"cve-2020-26242-denial-of-service-in-geth","title":"GO-2021-0103 - Denial of service in github.com/holiman/uint256","severity":"low","exploited":false,"published_at":"2021-07-28T18:08:05+00:00","url":"https://junglewise.ai/threats/cve-2020-26242-denial-of-service-in-geth"}],"generated_at":"2026-09-28T03:07:00.154823+00:00"}