A vulnerability was found in Google Go up to 1.25.1. It has been classified as problematic. Impacted is an unknown function of the component net-http. This manipulation causes uncontrolled memory allocation.

This vulnerability is handled as CVE-2025-58186. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is recommended.