Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2183966
AlmaLinux
5857
Alpaquita
15521
Alpine
4589
Android
3674
Azure Linux
17129
BellSoft Hardened Containers
744
Bitnami
9212
Chainguard
1019704
CleanStart
3422
CRAN
14
crates.io
2710
Debian
67321
Echo
6523
GHC
3
GIT
106259
GitHub Actions
55
Go
9147
Hackage
32
Hex
351
Julia
1713
Linux
29368
Mageia
6188
Maven
6998
MinimOS
142689
npm
228435
NuGet
1860
opam
29
openEuler
8541
openSUSE
14325
OSS-Fuzz
4002
Packagist
7036
Pub
11
PyPI
25073
Red Hat
23028
Rocky Linux
4229
Root
19463
RubyGems
4709
SUSE
23039
SwiftURL
59
TuxCare
9199
Ubuntu
64326
VSCode
21
Wolfi
287358
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-4rf6-qx84-q9fv
crates.io/fulgur
Fulgur: Non-painting replaced elements amplify to thousands of blank PDF pages (denial of service)
2 days ago
Fix available
Severity - 7.5 (High)
GHSA-j5cx-ph8g-95v3
crates.io/fulgur
Fulgur: Unbounded page slicing from attacker-controlled CSS height causes denial of service
2 days ago
Fix available
Severity - 7.5 (High)
GHSA-9g45-5xwm-f3wc
crates.io/rmcp
RMCP: Custom HTTP headers leak to cross-origin redirect targets
2 days ago
Fix available
Severity - 6.8 (Medium)
RUSTSEC-2026-0287
crates.io/cosmian_kyber
cosmian_kyber is unmaintained
2 days ago
No fix available
RUSTSEC-2026-0289
crates.io/pqc_kyber
pqc_kyber is unmaintained
2 days ago
No fix available
GHSA-9pj6-vhgr-3mwh
crates.io/rmcp
RMCP: Unauthenticated permanent session-table leak in rmcp Streamable HTTP server transport leads to remote denial-of-service
2 days ago
Fix available
Severity - 7.5 (High)
GHSA-33f5-2c5q-wgwj
crates.io/rmcp
RMCP: Missing Resource Field Validation in OAuth Protected Resource Metadata Discovery
2 days ago
Fix available
Severity - 8.2 (High)
RUSTSEC-2026-0286
crates.io/cryptoki
Out-of-bounds read when decoding CKA_ALLOWED_MECHANISMS
3 days ago
Fix available
GHSA-5hq8-qhww-jm7q
crates.io/libp2p-quic
libp2p-quic: Remote panic via certificate expiry race during QUIC handshake
3 days ago
Fix available
Severity - 8.2 (High)
RUSTSEC-2026-0285
crates.io/rustls
TLS 1.3 handshake messages incorrectly accepted across encryption level boundaries
5 days ago
Fix available
Severity - 5.3 (Medium)
RUSTSEC-2026-0283
crates.io/clear_on_drop
clear_on_drop is unmaintained
6 days ago
No fix available
MAL-2026-16164
crates.io/logs-update
Malicious code in logs_update (crates.io)
11 Sep
No fix available
GHSA-m3wp-48jr-vr4g
crates.io/mistralrs-server-core
mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS
10 Sep
Fix available
Severity - 7.5 (High)
GHSA-wfgq-w7cq-qj7j
crates.io/mistralrs-server-core
mistral.rs Media Loader: Unauthenticated SSRF and arbitrary local file read via image_url
10 Sep
Fix available
Severity - 7.2 (High)
GHSA-7rhf-42qf-vrvc
crates.io/gix-sec
gix-sec safe.directory protections absent for elevated administrators
09 Sep
Fix available
Severity - 6.8 (Medium)
RUSTSEC-2026-0282
crates.io/aligned_box
Double free in `AlignedBox<[T]>::realloc_with_default` when an element's `Drop` panics
09 Sep
Fix available
Load more...
crates.io - OSV