{"package":"github.com/lightningnetwork/lnd","ecosystem":"go","latest_version":"v0.21.0-beta.rc1","description":"Lightning Network Daemon ⚡️","license":"MIT","license_risk":"permissive","commercial_use_notes":"Permissive: commercial closed-source use OK; preserve the copyright notice.","homepage":"https://pkg.go.dev/github.com/lightningnetwork/lnd","repository":"https://github.com/lightningnetwork/lnd","downloads_weekly":8138,"health":{"score":51,"risk":"high","breakdown":{"maintenance":25,"popularity":6,"security":0,"maturity":15,"community":5},"deprecated":false,"max_score":100},"vulnerabilities":{"count":6,"critical":1,"high":3,"medium":0,"low":2,"details":[{"vuln_id":"CVE-2022-44797","severity":"critical","summary":"btcd mishandles witness size checking","affected_versions":"<0.23.2|<0.15.2-beta","fixed_version":"0.15.2-beta","source":"osv","published_at":"2022-11-07T12:00:34Z","in_kev":false,"epss_prob":0.00689,"epss_percentile":0.71835,"threat_tier":"theoretical"},{"vuln_id":"CVE-2019-12999","severity":"high","summary":"Improper Access Control in Lightning Network Daemon","affected_versions":"<0.7.1-beta","fixed_version":"0.7.1-beta","source":"osv","published_at":"2021-05-18T15:30:22Z","in_kev":false,"epss_prob":0.00817,"epss_percentile":0.74432,"threat_tier":"theoretical"},{"vuln_id":"CVE-2024-38359","severity":"high","summary":"Lightning Network Daemon (LND)'s onion processing logic leads to a denial of service","affected_versions":"<0.17.0-beta","fixed_version":"0.17.0-beta","source":"osv","published_at":"2024-06-20T19:18:25Z","in_kev":false,"epss_prob":0.0018,"epss_percentile":0.39307,"threat_tier":"theoretical"},{"vuln_id":"CVE-2022-39389","severity":"high","summary":"Witness Block Parsing DoS Vulnerability ","affected_versions":"<0.15.4-beta","fixed_version":"0.15.4-beta","source":"osv","published_at":"2022-11-18T18:50:01Z","in_kev":false,"epss_prob":0.00613,"epss_percentile":0.69938,"threat_tier":"theoretical"},{"vuln_id":"CVE-2019-12999","severity":"unknown","summary":"Improper Access Control in Lightning Network Daemon in github.com/lightningnetwork/lnd","affected_versions":"<0.7.1-beta","fixed_version":"0.7.1-beta","source":"osv","published_at":"2024-08-21T15:29:02Z","in_kev":false,"epss_prob":0.00817,"epss_percentile":0.74432,"threat_tier":"theoretical"},{"vuln_id":"CVE-2024-38359","severity":"unknown","summary":"Lightning Network Daemon (LND)'s onion processing logic leads to a denial of service in github.com/lightningnetwork/lnd","affected_versions":"<0.17.0-beta","fixed_version":"0.17.0-beta","source":"osv","published_at":"2024-07-01T19:59:12Z","in_kev":false,"epss_prob":0.0018,"epss_percentile":0.39307,"threat_tier":"theoretical"}],"actively_exploited_count":0,"likely_exploited_count":0},"versions":{"latest":"v0.21.0-beta.rc1","total_count":235,"recent":["v0.5.1-beta-rc2","v0.12.1-beta.rc1-branch","v0.13.1-beta.rc1","v0.9.0-beta-rc1","v0.15.0-beta.rc2","v0.10.2-beta-rc3-branch","v0.15.0-beta","v0.7.0-beta-rc1","v0.10.2-beta-rc4-branch","v0.20.0-beta.rc2","v0.12.0-beta.rc3-testbuild7","v0.14.3-beta","v0.16.0-beta","v0.18.4-beta.rc1","v0.9.0-beta","v0.10.2-beta.rc3","v0.12.1-beta.rc4","v0.21.0-beta.rc1","v0.17.1-beta.rc2","v0.10.3-beta"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":450,"first_published":null,"last_published":"2026-04-17T17:23:55Z","dependencies_count":0,"dependencies":[]},"github_stats":null,"bundle":null,"typescript":null,"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"do_not_use","issues":["3 high severity vulnerabilities","1 critical vulnerabilities"],"use_version":"v0.21.0-beta.rc1","version_hint":"Update to >= 0.17.0-beta to fix known vulnerabilities","summary":"github.com/lightningnetwork/lnd has critical vulnerabilities — do not use"},"version_scoped":null,"requested_version":null,"_cache":"miss","_response_ms":716,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":20,"first_release_age_days":3496,"last_release_days_ago":13,"avg_days_between_releases":184,"release_velocity":"active"}}