Mundur (https://github.com/M0nd0R)
4 credited records · 4 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2026-46600No exploit | Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessagego standard library · net · CWE-125 | High7.5 | — | 0.6% | Jul 21, 2026 |
31Monitor | CVE-2026-39822No exploit | Root escape via symlink plus trailing slash in osgolang · go · CWE-61 | High7.8 | — | 0.2% | Jul 8, 2026 |
30Monitor | CVE-2026-42501No exploit | Malicious module proxy can bypass checksum database in cmd/gogolang · go · CWE-347 | High7.5 | — | 0.3% | May 7, 2026 |
24Monitor | CVE-2026-39826No exploit | Escaper bypass leads to XSS in html/templategolang · go · CWE-116 | Medium6.1 | — | 0.4% | May 7, 2026 |
- CVE-2026-4660030Monitor
Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage
HighCVSS 7.5No exploitEPSS 1%go standard library · netJul 21, 2026
- CVE-2026-3982231Monitor
Root escape via symlink plus trailing slash in os
HighCVSS 7.8No exploitEPSS 0%golang · goJul 8, 2026
- CVE-2026-4250130Monitor
Malicious module proxy can bypass checksum database in cmd/go
HighCVSS 7.5No exploitEPSS 0%golang · goMay 7, 2026
- CVE-2026-3982624Monitor
Escaper bypass leads to XSS in html/template
MediumCVSS 6.1No exploitEPSS 0%golang · goMay 7, 2026