Security Advisories for github.com/theupdateframework/go-tuf/v2 in go
Moderate
7 months ago
go-tuf Path Traversal in TAP 4 Multirepo Client Allows Arbitrary File Write via Malicious Repository Names
go
github.com/theupdateframework/go-tuf/v2
Moderate
7 months ago
go-tuf improperly validates the configured threshold for delegations
go
github.com/theupdateframework/go-tuf/v2
Moderate
7 months ago
go-tuf affected by client DoS via malformed server response
go
github.com/theupdateframework/go-tuf/v2
High
almost 2 years ago
Incorrect delegation lookups can make go-tuf download the wrong artifact
go
github.com/theupdateframework/go-tuf/v2