Vulnerability Database
Blog
FAQ
Docs
Vulnerabilities
search
All ecosystems
287803
AlmaLinux
3463
Alpine
3652
Android
2768
Bitnami
5126
Chainguard
20748
CRAN
10
crates.io
1618
Debian
44956
GHC
3
GIT
27411
GitHub Actions
23
Go
4044
Hackage
20
Hex
34
Linux
13573
Mageia
5555
Maven
5359
npm
24322
NuGet
1419
openSUSE
9213
OSS-Fuzz
3571
Packagist
4418
Pub
10
PyPI
15448
Red Hat
15465
Rocky Linux
1630
RubyGems
1672
SUSE
15584
SwiftURL
35
Ubuntu
44627
Wolfi
12026
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-9cc5-2pq7-hfj8
crates.io/xmas-elf
xmas-elf potential out-of-bounds read with a malformed ELF file and the HashTable API.
yesterday
Fix available
Severity - 6.9 (Medium)
RUSTSEC-2025-0018
crates.io/xmas-elf
Potential out-of-bounds read with a malformed ELF file and the HashTable API.
2 days ago
Fix available
GHSA-fc83-9jwq-gc2m
crates.io/web-push
Web Push Denial of Service via malicious Web Push endpoint
3 days ago
Fix available
Severity - 6.9 (Medium)
GHSA-vgmh-mqm4-8j88
crates.io/pared
pared Vulnerable to Use After Free in `Parc` and `Prc` Due to Missing Lifetime Constraints
3 days ago
Fix available
Severity - 6.8 (Medium)
RUSTSEC-2025-0017
crates.io/trust-dns-proto
The `trust-dns` project has been rebranded to `hickory-dns`
5 days ago
No fix available
GHSA-g8vq-v3mg-7mrg
crates.io/redlib
Redlib allows a Denial of Service via DEFLATE Decompression Bomb in restore_preferences Form
6 days ago
Fix available
Severity - 8.7 (High)
GHSA-5w4j-f78p-4wh9
crates.io/libcontainer
Libcontainer is affected by capabilities elevation similar to GHSA-f3fp-gc8g-vw66
6 days ago
Fix available
Severity - 5.9 (Medium)
GHSA-cg8r-jwg7-r2x4
crates.io/cosmwasm
CosmWasm Allows Bypass of Capability Restrictions in Blockchains
18 Mar
Fix available
Severity - 5.3 (Medium)
GHSA-94vh-gphv-8pm8
crates.io/zip
zip Incorrectly Canonicalizes Paths during Archive Extraction Leading to Arbitrary File Write
17 Mar
Fix available
Severity - 7.3 (High)
GHSA-w6fv-6gcc-x825
crates.io/zincati
Zincati allows unprivileged access to rpm-ostree D-Bus `Deploy()` and `FinalizeDeployment()` methods
17 Mar
Fix available
Severity - 2.1 (Low)
GHSA-89xp-c3mq-qj84
crates.io/gurk
gurk (aka gurk-rs) mishandles ANSI escape sequences
17 Mar
No fix available
Severity - 5.4 (Medium)
RUSTSEC-2025-0016
crates.io/pared
Use after free in `Parc` and `Prc` due to missing lifetime constraints
13 Mar
Fix available
GHSA-9mc5-7qhg-fp3w
crates.io/below
Below has Incorrect Permission Assignment for Critical Resource
11 Mar
Fix available
Severity - 7.8 (High)
GHSA-fmwf-c46w-r8qm
crates.io/qcp
qcp has possible crash/DOS in some build configurations
08 Mar
Fix available
Severity - 6.9 (Medium)
GHSA-2gh3-rmm4-6rq5
crates.io/protobuf
Crash due to uncontrolled recursion in protobuf crate
07 Mar
Fix available
Severity - 6.6 (Medium)
GHSA-4p46-pwfr-66x6
crates.io/ring
Some AES functions may panic when overflow checking is enabled in ring
07 Mar
Fix available
Severity - 6.6 (Medium)
Load more...
crates.io - OSV