Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2248570
AlmaLinux
5959
Alpaquita
16105
Alpine
4608
Android
2912
Azure Linux
17651
BellSoft Hardened Containers
754
Bitnami
9341
Chainguard
1030980
CleanStart
3946
CRAN
14
crates.io
2739
Debian
68573
Docker Hardened Images
1
Echo
4006
GHC
3
GIT
107112
GitHub Actions
55
Go
9247
Hackage
33
Hex
364
Julia
1713
Linux
29269
Mageia
6232
Maven
7044
MinimOS
145036
npm
228917
NuGet
1869
opam
29
openEuler
8800
openSUSE
14484
OSS-Fuzz
4003
Packagist
7104
Pub
11
PyPI
25192
Red Hat
23387
Rocky Linux
4308
Root
19592
RubyGems
5326
SUSE
23349
SwiftURL
60
TuxCare
9676
Ubuntu
65637
VSCode
21
Wolfi
333108
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-m6mh-2hw2-555x
crates.io/ammonia
Ammonia: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
8 hours ago
Fix available
Severity - 5.4 (Medium)
RUSTSEC-2026-0311
crates.io/latex-rust
Stack overflow on deeply nested LaTeX input
2 days ago
Fix available
RUSTSEC-2026-0310
crates.io/domain
Various panics, soundness and resource exhaustion issues
4 days ago
Fix available
GHSA-2jx3-ff3v-j7jj
crates.io/yara-x
yara-x: Unvalidated deserialization in safe `Rules::deserialize` allows memory corruption and UB
5 days ago
Fix available
Severity - 4.8 (Medium)
RUSTSEC-2026-0308
crates.io/salsa
Use-after-free in interned values and cached function results
5 days ago
Fix available
RUSTSEC-2026-0312
crates.io/x509-validator
Excluded iPAddress name constraints with an all-zero mask are not applied
5 days ago
Fix available
Severity - 7.4 (High)
RUSTSEC-2026-0313
crates.io/wasmtime-wasi-http
Outgoing HTTP body write allows guest-driven host memory exhaustion
5 days ago
Fix available
Severity - 6.2 (Medium)
RUSTSEC-2026-0314
crates.io/wasmtime-wasi
Guest can panic host through filesystem datetime overflow
5 days ago
Fix available
Severity - 6.2 (Medium)
RUSTSEC-2026-0315
crates.io/wasmtime
`call_ref` and exception `catch` can drop some fuel accounting, leading to exponential fuel amplification
5 days ago
Fix available
Severity - 5.7 (Medium)
RUSTSEC-2026-0316
crates.io/wasmtime
Dynamic record lifting can allocate beyond the hostcall fuel limit
5 days ago
Fix available
Severity - 1.0 (Low)
RUSTSEC-2026-0305
crates.io/librsvg
Use-after-free when XML includes have duplicated entities
6 days ago
Fix available
RUSTSEC-2026-0307
crates.io/uncbv
`uncbv`: archive extraction is vulnerable to path traversal (zip-slip)
6 days ago
Fix available
Severity - 7.1 (High)
GHSA-m8f5-rh7h-vgg3
crates.io/microsandbox
microsandbox: Secret values exposed in world-readable process arguments
22 Sep
Fix available
Severity - 6.5 (Medium)
RUSTSEC-2026-0299
crates.io/owned-alloc
`owned-alloc` is unmaintained
22 Sep
No fix available
RUSTSEC-2026-0301
crates.io/stack_collections
Double free in `StackVec::retain` when a predicate or element `Drop` panics
22 Sep
Fix available
RUSTSEC-2026-0302
crates.io/stack-graphs
`stack-graphs` C API exports are safe `extern "C"` functions
22 Sep
No fix available
Load more...
crates.io - OSV