Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
817066
AlmaLinux
5524
Alpaquita
12738
Alpine
4374
Android
3403
Azure Linux
12016
BellSoft Hardened Containers
616
Bitnami
8525
Chainguard
9985
CleanStart
1988
CRAN
14
crates.io
2638
Debian
62511
Echo
7830
GHC
3
GIT
97921
GitHub Actions
54
Go
8594
Hackage
32
Hex
228
Julia
1644
Linux
26627
Mageia
6105
Maven
6831
MinimOS
105454
npm
226148
NuGet
1844
opam
24
openEuler
7502
openSUSE
13872
OSS-Fuzz
3977
Packagist
6821
Pub
11
PyPI
24362
Red Hat
22016
Rocky Linux
3883
Root
18866
RubyGems
4591
SUSE
22230
SwiftURL
59
TuxCare
8263
Ubuntu
59831
VSCode
20
Wolfi
7091
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-3763-qp59-59vf
crates.io/nimiq-blockchain
nimiq-blockchain: Validity store off by one error
yesterday
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0252
crates.io/orx-split-vec
Panic-safety unsoundness in `SplitVec::extend_from_slice` (uninitialized read)
2 days ago
Fix available
RUSTSEC-2026-0254
crates.io/sp-sized-chunks
Panic-safety unsoundness in `Chunk` and `InlineArray` (use-after-free / double-free)
2 days ago
No fix available
RUSTSEC-2026-0255
crates.io/sized-chunks
Panic-safety unsoundness in `Chunk`, `RingBuffer`, and `InlineArray` (use-after-free / double-free)
2 days ago
No fix available
RUSTSEC-2026-0256
crates.io/circular-buffer
Panic-safety unsoundness in `truncate_back`, `truncate_front`, `clear`, and `extend_from_slice` (use-after-free / double-free)
2 days ago
Fix available
RUSTSEC-2026-0238
crates.io/dcrypt-algorithms
Low-level GCM ignores the operation nonce
4 days ago
Fix available
RUSTSEC-2026-0239
crates.io/dcrypt-symmetric
Streaming AEAD does not authenticate stream structure
4 days ago
Fix available
RUSTSEC-2026-0240
crates.io/dcrypt-sign
Ed25519 identity public keys permit universal signature forgery
4 days ago
Fix available
RUSTSEC-2026-0242
crates.io/dcrypt-api
Safe ErrorRegistry APIs can cause undefined behavior
4 days ago
Fix available
RUSTSEC-2026-0236
crates.io/viperjs
A `BigInt` division panics, and two neighbouring operations answer wrongly in silence
06 Aug
Fix available
Severity - 7.5 (High)
RUSTSEC-2026-0244
crates.io/gettext-rs
`setlocale` and `TextDomain::init` are unsound as they access environment with no synchronization
06 Aug
Fix available
RUSTSEC-2026-0245
crates.io/sevenz-rust
Relative/Absolute Path Traversal (CWE-23/CWE-36) in `decompress_impl` that enables an arbitrary file write.
06 Aug
No fix available
Severity - 8.3 (High)
RUSTSEC-2026-0246
crates.io/sevenz-rust
`sevenz-rust` is unmaintained
06 Aug
No fix available
GHSA-m65r-rprj-r5rg
crates.io/russh
Russh: Channel-scoped server callbacks can be reached without an open channel
03 Aug
Fix available
Severity - 6.5 (Medium)
RUSTSEC-2026-0237
crates.io/nostr-relay-builder
`nostr-relay-builder` is unmaintained
03 Aug
No fix available
RUSTSEC-2026-0241
crates.io/nostr-keyring
`nostr-keyring` is unmaintained
03 Aug
No fix available
Load more...
crates.io - OSV