Vulnerability GO-2026-6608

Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
8 hours ago
October 08, 2026 at 10:31 PM UTC
Memory limit bypass when parsing MIME headers in net/textproto, mime/multipart
<1.26.9
<1.26.9

Summary

Memory limit bypass when parsing MIME headers in net/textproto, mime/multipart

Details

Parsing a multipart form can bypass memory limits and read an arbitrarily long line into memory when the remaining limit at the start of a part is less than 400 bytes.

Impacted packages

Timeline

Published
8 hours ago
October 08, 2026 at 10:31 PM UTC
Last Modified
8 hours ago
October 08, 2026 at 11:00 PM UTC