A vulnerability labeled as problematic has been found in Google Go up to 0.38.x. Impacted is an unknown function of the component norm. Executing a manipulation can lead to infinite loop.

The identification of this vulnerability is CVE-2026-56852. The attack may be launched remotely. There is no exploit available.