A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | AA | |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | Repository Host | Project Name (Alphabetical Order) | Organization | Version | Language | Audit Start Date | Audit End Date | # of Security/Reliability Bugs Filed | # of Logical/Other Bugs Filed | # of Bug Reports Accepted | # of Bug Reports Declined | Relevant Links For Reported/Fixed Bugs | # of Reports containing Fixes | # of PoCs Generated | Bug Kind | Bug Severity | |||||||||||
2 | github.com | act | nektos | 0.2.50 | Go | 2023-09-07 | 2023-09-07 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
3 | github.com | actions-runner-controller | actions-runner-controller | d72774753c1ac24f927cac68b368f2abc9f65f40 | Go | 2024-01-29 | 2024-01-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
4 | github.com | alertmanager | CollectiveHealth | 0.15.2 | Go | 2023-08-21 | 2023-08-21 | 0 | 1 | 0 | 0 | https://github.com/collectivehealth/alertmanager/pull/2 | 1 | 0 | Logical | Low | |||||||||||
5 | github.com | api | OpenShift | 8c87a63ed0fdf0cad4c9f612d4a74027876b7b61 | Go | 2023-08-22 | 2023-08-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
6 | github.com | api-manager | redhat-appstudio | 8de319485c8829635c90755d0f0130e04c89a70d | Go | 2024-04-15 | 2024-04-21 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
7 | github.com | application-api | redhat-appstudio | c647c0bdcda5ee1ccd47fc9a295844adbc713b86 | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
8 | github.com | application-service | redhat-appstudio | d5ea86b89b75159cc56f3e1d73903ec6a9cce7fa | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
9 | github.com | arch | golang | 0.6.0 | Go | 2023-11-02 | 2023-11-02 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
10 | github.com | aresdb | uber | 0.0.2 | Go | 2023-12-26 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
11 | github.com | arishem | Bytedance | 1.0.0rc2 | Go | 2023-08-07 | 2023-08-07 | 0 | 1 | 1 | 0 | https://github.com/bytedance/arishem/pull/12 | 1 | 0 | Logical | Low | |||||||||||
12 | github.com | automaxprocs | uber-go | 1.5.3 | Go | 2023-12-22 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
13 | github.com | autoscaler | kubernetes | 9.34.0 | Go | 2023-12-18 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
14 | github.com | aws-ebs-csi-driver | OpenShift | a85fb6358eae7b83a083eb8003cf929b3f31d413 | Go | 2023-08-22 | 2023-08-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
15 | github.com | aws-load-balancer-controller | OpenShift | 2.3.1 | Go | 2023-08-22 | 2023-08-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
16 | github.com | bbolt | etcd-io | 1.3.9 | Go | 2024-12-16 | 2024-12-16 | 0 | 1 | 1 | 0 | https://github.com/etcd-io/bbolt/issues/876 | 1 | 0 | Logical | Medium | |||||||||||
17 | github.com | btree | 1.0.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
18 | github.com | build | golang | 3403d10ebb10ea84b441ff5c9e81225d15305066 | Go | 2023-11-02 | 2023-11-02 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
19 | github.com | build-service | redhat-appstudio | ba53d13163e3b213a181dde34091207f0fa9937d | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
20 | github.com | build-trusted-artifacts | redhat-appstudio | 4fd95c983a29da316da9a919f030e7d88de4384c | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
21 | github.com | cadence | Uber | 1.0.0 | Go | 2023-08-01 | 2023-08-09 | 1 | 0 | 1 | 0 | https://github.com/uber/cadence/pull/5377 | 1 | 0 | Context Leak | Low | |||||||||||
22 | github.com | cadence | uber | 1.12.13 | Go | 2024-11-05 | 2024-11-06 | 1 | 0 | 1 | 0 | https://github.com/uber/cadence/issues/6492 | 1 | 0 | Deadlock | High | |||||||||||
23 | github.com | cadence-client | uber-go | 1.2.7rc1 | Go | 2023-12-26 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
24 | github.com | cadvisor | 0.49.0 | Go | 2024-12-23 | 2024-12-23 | 0 | 1 | 0 | 0 | https://github.com/google/cadvisor/issues/3637 | 0 | 0 | Data Race | High | ||||||||||||
25 | github.com | camelcase | fatih | 1.0.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
26 | github.com | cel-go | 0.20.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
27 | github.com | cff | uber-go | cc4bd6dfee4dfe9d87355d9f78d4cebf3f70d504 | Go | 2023-12-22 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
28 | github.com | chroma | alecthomas | 2.12.0 | Go | 2024-01-23 | 2024-01-23 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
29 | github.com | client_model | prometheus | 0.6.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
30 | github.com | clone-controller | redhat-appstudio | 529aff972018404712837eaf164a031a20d2eaf4 | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
31 | github.com | cloud-provider-aws | kubernetes | 1.29.0 | Go | 2023-12-18 | 2023-12-18 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
32 | github.com | cloud-provider-openstack | kubernetes | 0f14a30d21e7292f9c2ba58cc2a7ef7fc7fb0d97 | Go | 2023-12-20 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
33 | github.com | cloud-sql-proxy | GoogleCloudPlatform | 2.8.2 | Go | 2024-01-31 | 2024-01-31 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
34 | github.com | cluster-api-provider-openstack | OpenShift | 0.8.0alpha0 | Go | 2023-08-22 | 2023-08-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
35 | github.com | cluster-bootstrap | kubernetes | 0.29.0 | Go | 2023-12-18 | 2023-12-18 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
36 | github.com | cmux | soheilhy | 0.1.5 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
37 | github.com | cobra | spf13 | 1.8.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
38 | github.com | common | prometheus | 0.55.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
39 | github.com | console | containerd | 1.0.3 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
40 | github.com | core-java-spring | eclipse-arrowhead | 4.6.1 | Go | 2023-10-25 | 2023-10-25 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
41 | github.com | coredns | OpenShift | 3.11.0 | Go | 2023-08-22 | 2023-08-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
42 | github.com | corefile-migration | coredns | 1.0.2 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
43 | github.com | corefile-migration | coredns | 1.0.21 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
44 | github.com | crypto | go | 0.24.0 | Go | 2024-12-16 | 2024-12-16 | 0 | 1 | 1 | 0 | https://github.com/golang/go/issues/70897 | 1 | 0 | Logical | Medium | |||||||||||
45 | github.com | crypto | golang | 0.14.0 | Go | 2023-11-02 | 2023-11-02 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
46 | github.com | csi-translation-lib | kubernetes | 0.29.0 | Go | 2023-12-18 | 2023-12-18 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
47 | github.com | dapr | dapr | 1.11.5 | Go | 2023-11-06 | 2024-01-15 | 1 | 0 | 1 | 0 | https://github.com/dapr/dapr/issues/7149 | 0 | 0 | Security Misconfiguration | High | |||||||||||
48 | github.com | dapr | dapr | 1.11.5 | Go | 2023-11-06 | 2024-01-15 | 1 | 0 | 1 | 0 | https://github.com/dapr/dapr/pull/7381 | 1 | 0 | Data Race | High | |||||||||||
49 | github.com | dashboard | kubernetes | 3.0.0alpha0 | Go | 2023-12-22 | 2023-12-27 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
50 | github.com | dddfirework | bytedance | 1.1.0 | Go | 2023-12-20 | 2023-12-28 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
51 | github.com | debug | golang | 7e676ac840af391ca7065d03ecabcf935f5b3d9d | Go | 2023-11-02 | 2023-11-02 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
52 | github.com | decimal | shopspring | 1.3.1 | Go | 2024-01-24 | 2024-01-24 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
53 | github.com | dedent | lithammer | 1.1.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
54 | github.com | devfile-sample-go-dance | redhat-appstudio | 11393d9fac452e28b7b28decc00d3d81a1a5fe58 | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
55 | github.com | dex | dexidp | 2.38.0 | Go | 2024-01-31 | 2024-01-31 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
56 | github.com | dl | golang | b8ab228806204ccf911b2a404a6713a12b4478cb | Go | 2023-11-02 | 2023-11-02 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
57 | github.com | dlite | Harness | 1.0.0rc7 | Go | 2023-09-07 | 2023-09-07 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
58 | github.com | dora-metrics | redhat-appstudio | 630e08a427f4a6cd3a5fd869d224de34d03874c2 | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
59 | github.com | drone-cli | Harness | 1.7.0 | Go | 2023-09-07 | 2023-09-07 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
60 | github.com | dynamic-resource-allocation | kubernetes | 0.29.0rc1 | Go | 2023-11-29 | 2023-12-14 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
61 | github.com | e2e-tests | redhat-appstudio | 6ce7cf6e670e4ba7c4ff157d765d7646bc6ebfa0 | Go | 2024-04-17 | 2024-04-17 | 1 | 0 | 1 | 1 | https://github.com/redhat-appstudio/e2e-tests/pull/1119 | 1 | 0 | Data Race | High | |||||||||||
62 | github.com | easyjson | mailru | 0.7.7 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
63 | github.com | ebpf | cilium | 0.9.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
64 | github.com | Elkeid | bytedance | 93a44936de68f351d967a66deca574fa0f8ea091 | Go | 2024-01-03 | 2024-01-10 | 1 | 0 | 0 | 0 | https://github.com/bytedance/Elkeid/issues/569 | 0 | 0 | Data Race | High | |||||||||||
65 | github.com | Elkeid | bytedance | 93a44936de68f351d967a66deca574fa0f8ea091 | Go | 2024-01-03 | 2024-01-10 | 0 | 1 | 0 | 0 | https://github.com/bytedance/Elkeid/pull/571 | 1 | 0 | Logical | Low | |||||||||||
66 | github.com | endpointslice | kubernetes | 0.29.0 | Go | 2023-12-18 | 2023-12-18 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
67 | github.com | ent | ent | 0.12.5 | Go | 2024-01-28 | 2024-01-28 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
68 | github.com | errors | go-errors | 1.4.2 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
69 | github.com | external-secrets | redhat-appstudio | 0.9.0 | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
70 | github.com | ff-golang-server-sdk | Harness | 0.1.9 | Go | 2023-09-07 | 2023-09-07 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
71 | github.com | ff-proxy | Harness | 1.0.0 | Go | 2023-09-07 | 2023-09-07 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
72 | github.com | filepath-securejoin | cyphar | 0.2.4 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
73 | github.com | fileutils | mrunalp | 0.5.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
74 | github.com | float16 | x448 | 0.8.4 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
75 | github.com | fx | uber-go | 1.20.1 | Go | 2023-12-22 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
76 | github.com | gbenhaim-test-repo | redhat-appstudio | 9d6dce6b087f27545d18a27f5a0e40578a10a6ec | Go | 2024-04-15 | 2024-04-15 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
77 | github.com | gettext-go | chai2010 | 1.0.2 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
78 | github.com | ginkgo | onsi | 2.19.0 | Go | 2024-12-23 | 2024-12-23 | 0 | 1 | 0 | 1 | https://github.com/onsi/ginkgo/issues/1494 | 1 | 0 | Logical | Medium | |||||||||||
79 | github.com | gnostic | 0.7.0 | Go | 2024-01-24 | 2024-01-24 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
80 | github.com | gnostic-models | 0.6.8 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
81 | github.com | go | json-iterator | 1.1.12 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
82 | github.com | go-cmp | 0.6.0 | Go | 2024-12-16 | 2024-12-16 | 0 | 1 | 0 | 1 | https://github.com/google/go-cmp/issues/369 | 1 | 0 | Logical | Medium | ||||||||||||
83 | github.com | go-colortext | daviddengcn | 1.0.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
84 | github.com | go-digest | opencontainers | 1.0.0 | Go | 2024-01-24 | 2024-01-24 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
85 | github.com | go-ethereum | ethereumproject | 6.0.8 | Go | 2024-01-31 | 2024-01-31 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
86 | github.com | go-hclog | hashicorp | 1.6.2 | Go | 2024-01-29 | 2024-01-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
87 | github.com | go-humanize | dustin | 1.0.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
88 | github.com | go-ole | go-ole | 1.3.0 | Go | 2024-01-31 | 2024-01-31 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
89 | github.com | go-restful | emicklei | 3.11.0 | Go | 2024-12-23 | 2024-12-23 | 1 | 0 | 0 | 0 | https://github.com/emicklei/go-restful/issues/575 | 0 | 0 | Insecure Deserialization | High | |||||||||||
90 | github.com | go-semver | coreos | 0.3.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
91 | github.com | go-strcase | stoewer | 1.3.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
92 | github.com | go-tagexpr | bytedance | 2.9.11 | Go | 2023-12-20 | 2024-01-10 | 1 | 0 | 0 | 0 | https://github.com/bytedance/go-tagexpr/pull/77 | 1 | 0 | Insecure Deserialization | Low | |||||||||||
93 | github.com | go-winio | microsoft | 0.6.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
94 | github.com | go-wordwrap | mitchellh | 1.0.1 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
95 | github.com | gocql | gocql | 1.6.0 | Go | 2024-01-31 | 2024-01-31 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
96 | github.com | godirwalk | karrick | 1.17.0 | Go | 2024-11-01 | 2024-11-29 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
97 | github.com | gofuzz | 1.2.0 | Go | 2024-01-24 | 2024-01-24 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | |||||||||||||
98 | github.com | google-cloud-go | googleapis | 1.69.0 | Go | 2024-11-05 | 2024-11-13 | 1 | 0 | 1 | 0 | https://github.com/googleapis/google-cloud-go/issues/11126 | 1 | 0 | Channel Blocking | High | |||||||||||
99 | github.com | gopatch | uber-go | 0.3.0 | Go | 2023-12-22 | 2023-12-22 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ | ||||||||||||
100 | github.com | gopkg | bytedance | a5eedbe96960cf0f801cf970e89f511842daee75 | Go | 2023-12-20 | 2023-12-28 | 0 | 0 | 0 | 0 | 0 | 0 | ​ | ​ |