https://seclists.org/oss-sec/2026/q2/186: Go 1.26.2 and Go 1.25.9 aleased with 10 security fixes
Published Apr 20, 2026
·Updated
Affected Software
1 affected component
Google Go
Frequently Asked Questions
1
What are the security fixes included in CVE-2026-XXXX for Google Go?
CVE-2026-XXXX addresses 10 security vulnerabilities in Google Go including issues affecting memory safety and denial of service risks.
2
What is the severity of CVE-2026-XXXX?
The severity of CVE-2026-XXXX has been rated as high due to potential exploitation leading to significant security risks.
3
How do I fix CVE-2026-XXXX?
To fix CVE-2026-XXXX, update your Go installation to version 1.26.2 or 1.25.9, which contain the necessary security patches.
4
Is Go 1.26.2 safe to use after fixing CVE-2026-XXXX?
Yes, Go version 1.26.2 includes all security fixes related to CVE-2026-XXXX and is considered safe to use.
5
What versions of Go are affected by CVE-2026-XXXX?
CVE-2026-XXXX affects Google Go version 1.25.9 and earlier versions.