CVE-2026-33813
Panic when decoding large WEBP image on 32-bit platforms in golang.org/x/image
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Parsing a WEBP image with an invalid, large size panics on 32-bit platforms.
| Vendor | golang.org/x/image |
| Product | golang.org/x/image/webp |
| Published | Apr 21, 2026 |
Stay Ahead of the Next One
Get instant alerts for golang.org/x/image golang.org/x/image/webp
Be the first to know when new unknown vulnerabilities affecting golang.org/x/image golang.org/x/image/webp are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
golang.org/x/image / golang.org/x/image/webp
0 < 0.39.0
References
Credits
Tristan Madani