github.com/dragonflyoss/dragonfly
Delivers efficient, stable, and secure data distribution and acceleration powered by P2P technology, with an optional content‑addressable filesystem that accelerates OCI container launch.
Activity
- Latest release
- 5y ago
- Total releases
- 19
- Cadence
- ~26 days
- Last 12 months
- 0
Reach
- Stars
- 3.3k
Details
- First release
- May 02, 2018
| Version | Released | |
|---|---|---|
v1.0.6
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.6
patch
Dependencies (28)
+ 20 more |
|
v1.0.5
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.5
patch
Dependencies (28)
+ 20 more |
|
v1.0.4
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.4
patch
Dependencies (27)
+ 19 more |
|
v1.0.3
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.3
patch
Dependencies (27)
+ 19 more |
|
v1.0.2
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.2
patch
Dependencies (27)
+ 19 more |
|
v1.0.1
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.1
patch
Dependencies (27)
+ 19 more |
|
v1.0.0
major
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.0
major
Dependencies (25)
+ 17 more |
|
v1.0.0-alpha
pre
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v1.0.0-alpha
pre
Dependencies (25)
+ 17 more |
|
v0.4.3
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.4.3
patch
Dependencies (22)
+ 14 more |
|
v0.4.2
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.4.2
patch
Dependencies (21)
+ 13 more |
|
v0.4.1
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.4.1
patch
|
|
v0.4.0
minor
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.4.0
minor
|
|
v0.3.1
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.3.1
patch
|
|
v0.3.0
minor
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.3.0
minor
|
|
v0.2.1
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.2.1
patch
|
|
v0.2.0
minor
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.2.0
minor
|
|
v0.1.1
patch
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.1.1
patch
|
|
v0.1.0
minor
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.1.0
minor
|
|
v0.0.1
initial
11 CVEs
CVE-2025-59345
GO-2025-3965
GHSA-89vc-vf32-ch59
Sep 24, 2025
Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly Dragonfly doesn't have authentication enabled for some Manager’s endpoints in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59351
GO-2025-3970
GHSA-4mhv-8rh3-4ghw
Sep 24, 2025
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59349
GO-2025-3964
GHSA-8425-8r2f-mrv6
Sep 24, 2025
Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly Dragonfly's directories created via os.MkdirAll are not checked for permissions in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59348
GO-2025-3963
GHSA-2qgr-gfvj-qpcr
Sep 24, 2025
Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly Dragonfly incorrectly handles a task structure’s usedTrac field in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59410
GO-2025-3974
GHSA-mcvp-rpgg-9273
Sep 24, 2025
DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59347
GO-2025-3966
GHSA-98x5-jw98-6c97
Sep 24, 2025
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly Dragonfly's manager makes requests to external endpoints with disabled TLS authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59346
GO-2025-3968
GHSA-g2rq-jv54-wcpr
Sep 24, 2025
Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly Dragonfly vulnerable to server-side request forgery in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59353
GO-2025-3969
GHSA-255v-qv84-29p5
Sep 24, 2025
DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly DragonFly's manager generates mTLS certificates for arbitrary IP addresses in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59352
GO-2025-3971
GHSA-79hx-3fp8-hj66
Sep 24, 2025
DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly DragonFly vulnerable to arbitrary file read and write on a peer machine in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59350
GO-2025-3972
GHSA-c2fc-9q9c-5486
Sep 24, 2025
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly Dragonfly vulnerable to timing attacks against Proxy’s basic authentication in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-59354
GO-2025-3973
GHSA-hx2h-vjw2-8r54
Sep 24, 2025
DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly DragonFly has weak integrity checks for downloaded files in d7y.io/dragonfly References Updated Mar 03, 2026 · Source: OSV.dev |
v0.0.1
initial
|