Package
percona-node-exporter
Component
golang.org/x/crypto
Latest update
Aliases
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
GO-2026-5932 reports that golang.org/x/crypto/openpgp is unmaintained and unsafe by design. Its affected-package list is limited to the openpgp import paths (openpgp, /packet, /armor, /clearsign, /errors, /elgamal, /s2k) and its range is introduced=0 with no fixed event, so no release of x/crypto will ever clear it. This exporter links x/crypto for other purposes only and imports none of the openpgp packages, so the vulnerable code is not included in the package.
Status
Justification
Impact
Govulncheck found no affected symbols in the scanned Go binary.
Status