关键信息 Vulnerability Title: golang.org/x/crypto Vulnerable to Denial of Service (DoS) via Slow or Incomplete Key Exchange CVE ID: CVE-2025-22869 GHSA ID: GHSA-hcg3-q754-cr77 Severity: 7.5/10 (High) Affected Package: golang.org/x/crypto (Go) Affected Versions: < 0.35.0 Patched Versions: 0.35.0 Published Date: Apr 12 Last Updated: Apr 14 CVSS v3 Base Metrics Attack Vector: Network Attack Complexity: Low Privileges Required: None User Interaction: None Scope: Unchanged Confidentiality: None Integrity: None Availability: High Weaknesses CWE ID: CWE-770 References NVD Go Dev CL Go Dev Issue Go Vuln NetApp Advisory