Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-393w-9x6h-8gc7
  • crates.io/pingora-core
Pingora update for MadeYouReset HTTP/2 vulnerability yesterday
  • Fix available
  • Severity - 8.2 (High)
RUSTSEC-2025-0070
  • crates.io/pingora-core
Pingora MadeYouReset HTTP/2 vulnerability yesterday
  • Fix available
GHSA-cvmj-47v9-35m9
  • crates.io/fuser
FUSE-Rust: Uninitalized memory read and leak caused by fuser crate 3 days ago
  • Fix available
  • Severity - 8.2 (High)
GHSA-hhw4-xg65-fp2x
  • crates.io/serde_yml
serde_yml crate is unsound and unmaintained 3 days ago
  • No fix available
  • Severity - 6.9 (Medium)
GHSA-gfxp-f68g-8x78
  • crates.io/libyml
LibYML: `libyml::string::yaml_string_extend` is unsound and unmaintained 3 days ago
  • No fix available
  • Severity - 8.7 (High)
GHSA-95hm-pr6q-298w
  • crates.io/fast-able
fast-able is vulnerable to DoS attack through insecure method 3 days ago
  • Fix available
  • Severity - 8.7 (High)
RUSTSEC-2025-0069
  • crates.io/daemonize
`daemonize` is Unmaintained 4 days ago
  • No fix available
GHSA-q7pg-9pr4-mrp2
  • crates.io/httpsig
httpsig-rs: HMAC verification is vulnerable to timing attack 6 days ago
  • Fix available
  • Severity - 5.9 (Medium)
GHSA-7vm2-j586-vcvc
  • crates.io/SurrealDB
SurrealDB is Vulnerable to Unauthorized Data Exposure via LIVE Query Subscriptions 11 Sep
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-qhj8-q5r6-8q6j
  • crates.io/matrix-sdk-base
matrix-sdk-base: Panic in the `RoomMember::normalized_power_level()` method 11 Sep
  • Fix available
  • Severity - 2.7 (Low)
RUSTSEC-2025-0000
  • crates.io/matrix-sdk-base
matrix-sdk-base: Panic in the `RoomMember::normalized_power_level()` method 11 Sep
  • Fix available
RUSTSEC-2025-0065
  • crates.io/matrix-sdk-base
matrix-sdk-base: Panic in the `RoomMember::normalized_power_level()` method 11 Sep
  • Fix available
RUSTSEC-2025-0067
  • crates.io/libyml
`libyml::string::yaml_string_extend` is unsound and unmaintained 11 Sep
  • No fix available
RUSTSEC-2025-0068
  • crates.io/serde_yml
serde_yml crate is unsound and unmaintained 11 Sep
  • No fix available
GHSA-pfp7-vxgr-83pw
  • crates.io/toodee
toodee is vulnerable to Heap Buffer Overflow through its DrainCol Destructor 09 Sep
  • Fix available
  • Severity - 8.8 (High)
RUSTSEC-2025-0066
  • crates.io/google-apis-common
The `google-apis-rs` project is now unmaintained 09 Sep
  • No fix available