[go: up one dir, main page]

Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-m3c4-prhw-mrx6
  • crates.io/deno
Deno has an incomplete fix for command-injection prevention on Windows — case-insensitive extension bypass 8 hours ago
  • Fix available
  • Severity - 8.1 (High)
GHSA-5379-f5hf-w38v
  • crates.io/deno
Deno node:crypto doesn't finalize cipher 8 hours ago
  • Fix available
  • Severity - 9.2 (Critical)
GHSA-333v-68xh-8mmq
  • crates.io/rustfs
RustFS's RPC signature verification logs shared secret 8 hours ago
  • Fix available
  • Severity - 2.9 (Low)
GHSA-2gqc-6j2q-83qp
  • crates.io/cmov
RustCrypto Utilities cmov: `thumbv6m-none-eabi` compiler emits non-constant time assembly when using `cmovnz` yesterday
  • Fix available
  • Severity - 8.9 (High)
RUSTSEC-2026-0003
  • crates.io/cmov
Non-constant-time code generation on ARM32 targets 2 days ago
  • Fix available
  • Severity - 8.9 (High)
GHSA-hcp2-x6j4-29j7
  • crates.io/ml-dsa
RustCrypto: Signatures has timing side-channel in ML-DSA decomposition 3 days ago
  • Fix available
  • Severity - 6.4 (Medium)
GHSA-j9xq-69pf-pcm8
  • crates.io/sm2
RustCrypto Has Insufficient Length Validation in decrypt() in SM2-PKE 3 days ago
  • No fix available
  • Severity - 7.5 (High)
GHSA-mjjp-xjfg-97wg
  • PyPI/lief
  • crates.io/lief
LIEF is vulnerable to segmentation fault 6 days ago
  • Fix available
  • Severity - 1.9 (Low)
GHSA-78p6-6878-8mj6
  • crates.io/sm2
SM2-PKE has Unchecked AffinePoint Decoding (unwrap) in decrypt() 09 Jan
  • No fix available
  • Severity - 7.5 (High)
GHSA-w3g8-fp6j-wvqw
  • crates.io/sm2
SM2-PKE has 32-bit Biased Nonce Vulnerability 09 Jan
  • No fix available
  • Severity - 8.7 (High)
GHSA-585q-cm62-757j
  • crates.io/mnl
mnl has segmentation fault and invalid memory read in `mnl::cb_run` 09 Jan
  • No fix available
  • Severity - 2.0 (Low)
GHSA-54m3-5fxr-2f3j
  • crates.io/salvo
Salvo is vulnerable to stored XSS in the list_html function by uploading files with malicious names 08 Jan
  • Fix available
  • Severity - 8.8 (High)
GHSA-rhfx-m35p-ff5j
  • crates.io/lru
`IterMut` violates Stacked Borrows by invalidating internal pointer 07 Jan
  • Fix available
  • Severity - 2.7 (Low)
GHSA-gw2x-q739-qhcr
  • crates.io/rustfs
RustFS gRPC GetMetrics deserialization panic enables remote DoS 07 Jan
  • Fix available
  • Severity - 5.5 (Medium)
GHSA-pq29-69jg-9mxc
  • crates.io/rustfs
RustFS Path Traversal Vulnerability 07 Jan
  • Fix available
  • Severity - 8.8 (High)
RUSTSEC-2026-0002
  • crates.io/lru
`IterMut` violates Stacked Borrows by invalidating internal pointer 07 Jan
  • Fix available