Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
OSEC-2026-05
  • github.com/ocaml/ocaml
  • opam/ocaml
Windows command execution via filename quotes. 3 days ago
  • Fix available
  • Severity - 6.1 (Medium)
OSEC-2026-04
  • github.com/ocaml/ocaml
  • opam/ocaml
Bigarray.reshape integer overflow 3 days ago
  • Fix available
  • Severity - 6.1 (Medium)
OSEC-2026-09
  • git.robur.coop/robur/albatross.git
  • opam/albatross
Albatross-console memory exhaustion 28 May
  • Fix available
  • Severity - 4.9 (Medium)
OSEC-2026-08
  • github.com/mirage/ocaml-tar
  • opam/tar
Path traversal vulnerability in ocaml-tar 22 May
  • Fix available
  • Severity - 8.2 (High)
OSEC-2026-06
  • github.com/mirleft/ocaml-tls
  • opam/tls
TLS-client (with TLS 1.3) does insufficient certificate checks (missing KeyUsage and ExtendedKeyUsage validation) 20 May
  • Fix available
  • Severity - 7.4 (High)
OSEC-2026-07
  • github.com/mirleft/ocaml-tls
  • opam/tls
TLS-server does insufficient client certificate checks (missing KeyUsage and ExtendedKeyUsage validation) 20 May
  • Fix available
  • Severity - 7.4 (High)
OSEC-2026-03
  • github.com/ocaml/opam
  • opam/opam-devel
opam install sandbox escape 15 Apr
  • Fix available
  • Severity - 5.7 (Medium)
OSEC-2026-02
  • github.com/mirage/arp
  • opam/arp
ARP unbounded memory usage 18 Feb
  • Fix available
  • Severity - 7.4 (High)
OSEC-2026-01
  • github.com/ocaml/ocaml
  • opam/ocaml
Buffer Over-Read in OCaml Marshal Deserialization 17 Feb
  • Fix available
  • Severity - 6.8 (Medium)
OSEC-2025-01
  • github.com/robur-coop/albatross
  • opam/albatross
Albatross console out of memory 15 Aug 2025
  • Fix available
  • Severity - 6.5 (Medium)
OSEC-2023-01
  • github.com/ocaml/opam
  • opam/opam-repository
Time of check time of use issue in opam's cache 25 May 2023
  • Fix available
  • Severity - 7.1 (High)
OSEC-2022-01
  • github.com/solo5/solo5
  • opam/solo5
Infinite loop in console output on xen 07 Dec 2022
  • Fix available
  • Severity - 7.5 (High)
OSEC-2019-02
  • github.com/mirage/mirage-xen
  • opam/mirage-xen
Grant unshare vulnerability in mirage-xen 26 Apr 2019
  • Fix available
  • Severity - 7.7 (High)
OSEC-2019-01
  • github.com/mirage/mirage-net-xen
  • opam/netchannel
Memory disclosure in mirage-net-xen 21 Mar 2019
  • Fix available
  • Severity - 8.2 (High)
OSEC-2018-01
  • github.com/ocaml/ocaml
  • opam/ocaml
An integer overflow in the `bigarray` serialization module leads to arbitrary code execution 06 Apr 2018
  • Fix available
  • Severity - 9.8 (Critical)
OSEC-2017-01
  • github.com/ocaml/ocaml
  • opam/ocaml
Local privilege escalation issue with ocaml binaries 23 Jun 2017
  • Fix available
  • Severity - 9.8 (Critical)