icon

We found results for “

CVE-2025-68121

Good to know:

icon
icon

Date: January 14, 2026

crypto/tls: Config.Clone copies automatically generated session ticket keys, session resumption does not account for the expiration of full certificate chain

Severity Score

Severity Score

Weakness Type (CWE)

Improper Certificate Validation

CWE-295

Use of Hard-coded Cryptographic Key

CWE-321

Top Fix

icon

Upgrade Version

Upgrade to version https://github.com/golang/go.git - go1.26rc2;https://github.com/golang/go.git - go1.25.6;https://github.com/golang/go.git - go1.24.12

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): HIGH
Privileges Required (PR): NONE
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): LOW
Integrity (I): LOW
Availability (A): NONE

Do you need more information?

Contact Us