github.com/go-acme/lego
govv2.7.2+incompatibleLet's Encrypt/ACME client and library written in Go
License MITpermissive24 versions441 maintainers0 deps9,496 weekly dl
go-acme/lego43
/ 100
Health
update required
github.com/go-acme/[email protected]+incompatible has vulnerabilities — update to latest
Update to >= 4.34.0 to fix known vulnerabilities
- 1 high severity vulnerabilities
Health breakdown0 – 100
0/25
maintenance
6/20
popularity
20/25
security
12/15
maturity
5/15
community
Vulnerabilities
2
1 high1 low
Advisories (2)
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| low | CVE-2025-54799 | github.com/go-acme/lego/v4/acme/api does not enforce HTTPS | 4.25.2 |
| high | CVE-2026-40611 | ACME Lego: Arbitrary File Write via Path Traversal in Webroot HTTP-01 Provider | 4.34.0 |
Health History
Dependency Tree
License Audit
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/go/github.com/go-acme/legoLast updated · 2019-07-31T15:22:08Z