Affected by GO-2026-4348
and 2 other vulnerabilities
GO-2026-4348: Client DoS via malformed server response in github.com/theupdateframework/go-tuf
GO-2026-4349: Improper validattion of configured threshold for delegations in github.com/theupdateframework/go-tuf
GO-2026-4377: Path traversal in TAP 4 multirepo client allows arbitrary file write via repo names in github.com/theupdateframework/go-tuf
command
Version:
v2.3.0
Opens a new window with list of versions in this module.
Published: Nov 4, 2025
License: Apache-2.0
Opens a new window with license information.
Imports: 13
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Click to show internal directories.
Click to hide internal directories.