Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2221916
AlmaLinux
5889
Alpaquita
15521
Alpine
4589
Android
2912
Azure Linux
17153
BellSoft Hardened Containers
744
Bitnami
9238
Chainguard
1020158
CleanStart
3450
CRAN
14
crates.io
2717
Debian
67359
Docker Hardened Images
1
Echo
2744
GHC
3
GIT
104593
GitHub Actions
55
Go
9159
Hackage
32
Hex
351
Julia
1713
Linux
28753
Mageia
6203
Maven
6998
MinimOS
142857
npm
228510
NuGet
1860
opam
29
openEuler
8674
openSUSE
14336
OSS-Fuzz
4003
Packagist
7042
Pub
11
PyPI
25077
Red Hat
23056
Rocky Linux
4229
Root
19475
RubyGems
4709
SUSE
23045
SwiftURL
59
TuxCare
9388
Ubuntu
64515
VSCode
21
Wolfi
330671
ID
Packages
Summary
Published
arrow_upward
Attributes
RUSTSEC-2026-0293
crates.io/ringbuf
Double free / use-after-free in `Consumer::skip` and `Consumer::clear` when an element's `Drop` panics
18 hours ago
Fix available
RUSTSEC-2026-0296
crates.io/unzip
`unzip` is unmaintained
18 hours ago
No fix available
RUSTSEC-2026-0294
crates.io/iceoryx2-bb-container
Unsoundness in UTF-8 'String' trait
3 days ago
Fix available
GHSA-4rf6-qx84-q9fv
crates.io/fulgur
Fulgur: Non-painting replaced elements amplify to thousands of blank PDF pages (denial of service)
4 days ago
Fix available
Severity - 7.5 (High)
GHSA-j5cx-ph8g-95v3
crates.io/fulgur
Fulgur: Unbounded page slicing from attacker-controlled CSS height causes denial of service
4 days ago
Fix available
Severity - 7.5 (High)
GHSA-9g45-5xwm-f3wc
crates.io/rmcp
RMCP: Custom HTTP headers leak to cross-origin redirect targets
4 days ago
Fix available
Severity - 6.8 (Medium)
RUSTSEC-2026-0287
crates.io/cosmian_kyber
cosmian_kyber is unmaintained
4 days ago
No fix available
RUSTSEC-2026-0289
crates.io/pqc_kyber
pqc_kyber is unmaintained
4 days ago
No fix available
GHSA-9pj6-vhgr-3mwh
crates.io/rmcp
RMCP: Unauthenticated permanent session-table leak in rmcp Streamable HTTP server transport leads to remote denial-of-service
5 days ago
Fix available
Severity - 7.5 (High)
GHSA-33f5-2c5q-wgwj
crates.io/rmcp
RMCP: Missing Resource Field Validation in OAuth Protected Resource Metadata Discovery
5 days ago
Fix available
Severity - 8.2 (High)
RUSTSEC-2026-0286
crates.io/cryptoki
Out-of-bounds read when decoding CKA_ALLOWED_MECHANISMS
5 days ago
Fix available
GHSA-5hq8-qhww-jm7q
crates.io/libp2p-quic
libp2p-quic: Remote panic via certificate expiry race during QUIC handshake
6 days ago
Fix available
Severity - 8.2 (High)
RUSTSEC-2026-0285
crates.io/rustls
TLS 1.3 handshake messages incorrectly accepted across encryption level boundaries
14 Sep
Fix available
Severity - 5.3 (Medium)
RUSTSEC-2026-0283
crates.io/clear_on_drop
clear_on_drop is unmaintained
13 Sep
No fix available
MAL-2026-16164
crates.io/logs-update
Malicious code in logs_update (crates.io)
11 Sep
No fix available
GHSA-m3wp-48jr-vr4g
crates.io/mistralrs-server-core
mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS
10 Sep
Fix available
Severity - 7.5 (High)
Load more...
crates.io - OSV