golang.org/x/oauth2
Activity
- Latest release
- 2w ago
- Total releases
- 37
- Cadence
- ~30 days
- Last 12 months
- 5
Details
- First release
- Oct 19, 2022
| Version | Released | |
|---|---|---|
v0.37.0
minor
|
v0.37.0
minor
Dependencies (1)
|
|
v0.36.0
minor
|
v0.36.0
minor
Dependencies (1)
|
|
v0.35.0
minor
|
v0.35.0
minor
Dependencies (1)
|
|
v0.34.0
minor
|
v0.34.0
minor
Dependencies (1)
|
|
v0.33.0
minor
|
v0.33.0
minor
Dependencies (1)
|
|
v0.32.0
minor
|
v0.32.0
minor
Dependencies (1)
|
|
v0.31.0
minor
|
v0.31.0
minor
Dependencies (1)
|
|
v0.30.0
minor
|
v0.30.0
minor
Dependencies (1)
|
|
v0.29.0
minor
|
v0.29.0
minor
Dependencies (2)
|
|
v0.28.0
minor
|
v0.28.0
minor
Dependencies (2)
|
|
v0.27.0
minor
|
v0.27.0
minor
Dependencies (2)
|
|
v0.26.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.26.0
minor
Dependencies (2)
|
|
v0.25.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.25.0
minor
Dependencies (2)
|
|
v0.24.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.24.0
minor
Dependencies (2)
|
|
v0.23.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.23.0
minor
Dependencies (2)
|
|
v0.22.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.22.0
minor
Dependencies (2)
|
|
v0.21.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.21.0
minor
Dependencies (2)
|
|
v0.20.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.20.0
minor
Dependencies (2)
|
|
v0.19.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.19.0
minor
Dependencies (2)
|
|
v0.18.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.18.0
minor
Dependencies (3)
|
|
v0.17.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.17.0
minor
Dependencies (3)
|
|
v0.16.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.16.0
minor
Dependencies (3)
|
|
v0.15.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.15.0
minor
Dependencies (3)
|
|
v0.14.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.14.0
minor
Dependencies (3)
|
|
v0.13.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.13.0
minor
Dependencies (3)
|
|
v0.12.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.12.0
minor
Dependencies (3)
|
|
v0.11.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.11.0
minor
Dependencies (3)
|
|
v0.10.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.10.0
minor
Dependencies (3)
|
|
v0.9.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.9.0
minor
Dependencies (3)
|
|
v0.8.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.8.0
minor
Dependencies (3)
|
|
v0.7.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.7.0
minor
Dependencies (3)
|
|
v0.6.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.6.0
minor
Dependencies (3)
|
|
v0.5.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.5.0
minor
Dependencies (3)
|
|
v0.4.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.4.0
minor
Dependencies (4)
|
|
v0.3.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.3.0
minor
Dependencies (4)
|
|
v0.2.0
minor
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.2.0
minor
Dependencies (4)
|
|
v0.1.0
initial
1 CVE
CVE-2025-22868
GHSA-6v2p-p543-phr9
GO-2025-3488
Jul 18, 2025
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. Fixed in
0.27.0
References Updated Sep 10, 2026 · Source: OSV.dev |
v0.1.0
initial
Dependencies (4)
|