Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
809854
AlmaLinux
5466
Alpaquita
12401
Alpine
4355
Android
3404
Azure Linux
12016
BellSoft Hardened Containers
612
Bitnami
8525
Chainguard
9824
CleanStart
1988
CRAN
14
crates.io
2611
Debian
61917
Echo
7658
GHC
3
GIT
96819
GitHub Actions
54
Go
8566
Hackage
32
Hex
223
Julia
1519
Linux
26258
Mageia
6096
Maven
6795
MinimOS
103184
npm
225743
NuGet
1832
opam
22
openEuler
7502
openSUSE
13821
OSS-Fuzz
3973
Packagist
6797
Pub
11
PyPI
24274
Red Hat
21881
Rocky Linux
3840
Root
18776
RubyGems
4590
SUSE
22114
SwiftURL
59
TuxCare
8104
Ubuntu
59160
VSCode
20
Wolfi
6995
ID
Packages
Summary
Published
arrow_upward
Attributes
RUSTSEC-2026-0236
crates.io/viperjs
A
`
BigInt
`
division panics, and two neighbouring operations answer wrongly in silence
yesterday
Fix available
Severity - 7.5 (High)
GHSA-m65r-rprj-r5rg
crates.io/russh
Russh: Channel-scoped server callbacks can be reached without an open channel
3 days ago
Fix available
Severity - 6.5 (Medium)
RUSTSEC-2026-0224
crates.io/nostr-relay-pool
Verification cache poisoning allows forged Nostr events to bypass signature validation
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0225
crates.io/nostr
Debug output exposes NIP-46 and NIP-60 credentials
6 days ago
Fix available
Severity - 5.5 (Medium)
RUSTSEC-2026-0226
crates.io/nostr
Wallet event parsers accept unauthenticated events
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0227
crates.io/nostr
NIP-44 v2 decryption permits resource exhaustion
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0228
crates.io/nostr
NIP-04 parsing amplifies malformed ciphertext memory use
6 days ago
Fix available
Severity - 4.3 (Medium)
RUSTSEC-2026-0229
crates.io/nostr
NIP-98 authorization parsing permits resource exhaustion
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0230
crates.io/nostr
Empty NIP-50 search filters can panic
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0231
crates.io/nostr-relay-pool
Relay authentication challenges can exhaust memory
6 days ago
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0232
crates.io/nostr-relay-pool
Processing of unverified relay events
6 days ago
Fix available
Severity - 7.5 (High)
GHSA-3whf-vgf2-9w6g
crates.io/zaino-state
zaino-state has a Non-Finalized State Reorg — No Cycle Detection or Depth Limit
6 days ago
Fix available
Severity - 6.9 (Medium)
RUSTSEC-2026-0222
crates.io/wasmtime
Stores can mix up type indices between engines
31 Jul
Fix available
Severity - 3.8 (Low)
RUSTSEC-2026-0223
crates.io/wasmtime
Preemption and traps during bulk operations enable breaking internal VM state
31 Jul
Fix available
Severity - 2.0 (Low)
GHSA-6xx4-9wp6-65p7
crates.io/skilo
skilo add follows symbolic links, allowing arbitrary local file disclosure from a malicious skill source
28 Jul
Fix available
Severity - 6.5 (Medium)
GHSA-hc4m-q9jh-xw4j
crates.io/nono-cli
nono-cli'scregistry pack verification can fail open when provenance metadata is absent
28 Jul
Fix available
Severity - 6.6 (Medium)
Load more...
crates.io - OSV