Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-cq8v-f236-94qc
  • crates.io/rand
Rand is unsound with a custom logger using rand::rng() 10 hours ago
  • Fix available
GHSA-63x8-x938-vx33
  • crates.io/sp1_prover
  • crates.io/sp1_recursion_circuit
  • crates.io/sp1_sdk
SP1 V6 Recursion Circuit Row-Count Binding Gap 11 hours ago
  • Fix available
  • Severity - 8.9 (High)
GHSA-48m6-486p-9j8p
  • crates.io/nimiq-consensus
nimiq-consensus panics via RequestMacroChain micro-block locator 19 hours ago
  • No fix available
  • Severity - 5.3 (Medium)
GHSA-49xc-52mp-cc9j
  • crates.io/nimiq-blockchain
nimiq-blockchain is missing a wall-clock upper bound on block timestamps 3 days ago
  • No fix available
  • Severity - 9.1 (Critical)
GHSA-f984-pcp8-v2p7
  • crates.io/wasmtime
Wasmtime has improperly masked return value from `table.grow` with Winch compiler backend 3 days ago
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-xx5w-cvp6-jv83
  • crates.io/wasmtime
Wasmtime with Winch compiler backend on aarch64 may allow a sandbox-escaping memory access 3 days ago
  • Fix available
  • Severity - 9.2 (Critical)
GHSA-394w-hwhg-8vgm
  • crates.io/wasmtime
Wasmtime has out-of-bounds write or crash when transcoding component model strings 4 days ago
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-6wgr-89rj-399p
  • crates.io/wasmtime
Wasmtime has data leakage between pooling allocator instances 4 days ago
  • Fix available
  • Severity - 2.3 (Low)
GHSA-hfr4-7c6c-48w2
  • crates.io/wasmtime
Wasmtime has use-after-free bug after cloning `wasmtime::Linker` 4 days ago
  • Fix available
  • Severity - 1.0 (Low)
GHSA-jhxm-h53p-jm7w
  • crates.io/wasmtime
Wasmtime: Miscompiled guest heap access enables sandbox escape on aarch64 Cranelift 4 days ago
  • Fix available
  • Severity - 9.0 (Critical)
GHSA-q49f-xg75-m9xw
  • crates.io/wasmtime
Wasmtime has host panic when Winch compiler executes `table.fill` 4 days ago
  • Fix available
  • Severity - 5.9 (Medium)
GHSA-m9w2-8782-2946
  • crates.io/wasmtime
Wasmtime has host data leakage with 64-bit tables and Winch 4 days ago
  • Fix available
  • Severity - 2.3 (Low)
GHSA-qqfj-4vcm-26hv
  • crates.io/wasmtime
Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64 4 days ago
  • Fix available
  • Severity - 4.1 (Medium)
GHSA-m758-wjhj-p3jq
  • crates.io/wasmtime
Wasmtime has a possible panic when lifting `flags` component value 4 days ago
  • Fix available
  • Severity - 5.6 (Medium)
GHSA-jxhv-7h78-9775
  • crates.io/wasmtime
Wasmtime: Panic when transcoding misaligned utf-16 strings 4 days ago
  • Fix available
  • Severity - 5.9 (Medium)
GHSA-hx6p-xpx3-jvvv
  • crates.io/wasmtime
Wasmtime: Heap OOB read in component model UTF-16 to latin1+utf16 string transcoding 4 days ago
  • Fix available
  • Severity - 6.9 (Medium)