Vulnerability Database
Blog
FAQ
Docs
Vulnerabilities
search
All ecosystems
291341
AlmaLinux
3465
Alpine
3653
Android
2768
Bitnami
5273
Chainguard
23075
CRAN
10
crates.io
1630
Debian
45121
GHC
3
GIT
27429
GitHub Actions
24
Go
4066
Hackage
22
Hex
34
Linux
13574
Mageia
5561
Maven
5382
npm
24627
NuGet
1422
openSUSE
9224
OSS-Fuzz
3087
Packagist
4451
Pub
10
PyPI
15543
Red Hat
15509
Rocky Linux
1619
RubyGems
1674
SUSE
15612
SwiftURL
35
Ubuntu
45003
Wolfi
12435
ID
Packages
Summary
Published
arrow_upward
Attributes
RUSTSEC-2025-0021
crates.io/gix-features
SHA-1 collision attacks are not detected
yesterday
Fix available
Severity - 6.8 (Medium)
GHSA-c9pr-q8gx-3mgp
crates.io/tauri-plugin-shell
npm/@tauri-apps/plugin-shell
Improper Scope Validation in the `open` Endpoint of `tauri-plugin-shell`
yesterday
Fix available
Severity - 9.3 (Critical)
GHSA-pph8-gcv7-4qj5
crates.io/pyo3
PyO3 Risk of buffer overflow in `PyString::from_object`
yesterday
Fix available
Severity - 2.9 (Low)
GHSA-6xfj-hhwh-r3c2
crates.io/ouch
Ouch Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
2 days ago
Fix available
Severity - 4.8 (Medium)
RUSTSEC-2025-0020
crates.io/pyo3
Risk of buffer overflow in `PyString::from_object`
3 days ago
Fix available
GHSA-67r5-rqwv-9p9q
crates.io/array-init-cursor
array-init-cursor is unsound when used with types that implement `Drop`
3 days ago
Fix available
Severity - 2.9 (Low)
GHSA-j8x2-777p-23fc
crates.io/tough
tough cyclic delegation graphs are not detected
6 days ago
Fix available
Severity - 2.7 (Low)
GHSA-v4wr-j3w6-mxqc
crates.io/tough
tough terminating targets role delegations are not respected
6 days ago
Fix available
Severity - 5.7 (Medium)
GHSA-5vmp-m5v2-hx47
crates.io/tough
tough root metadata version is not checked for sequential versioning
6 days ago
Fix available
Severity - 5.7 (Medium)
GHSA-76g3-38jv-wxh4
crates.io/tough
tough timestamp metadata is cached when it fails snapshot rollback check
6 days ago
Fix available
Severity - 5.7 (Medium)
GHSA-q6r9-r9pw-4cf7
crates.io/tough
tough failure to detect delegated target rollback
6 days ago
Fix available
Severity - 5.7 (Medium)
RUSTSEC-2025-0019
crates.io/array-init-cursor
`array-init-cursor` in version 0.2.0 and below is unsound when used with types that implement `Drop`
27 Mar
Fix available
GHSA-9cc5-2pq7-hfj8
crates.io/xmas-elf
xmas-elf potential out-of-bounds read with a malformed ELF file and the HashTable API.
26 Mar
Fix available
Severity - 6.9 (Medium)
RUSTSEC-2025-0018
crates.io/xmas-elf
Potential out-of-bounds read with a malformed ELF file and the HashTable API.
26 Mar
Fix available
GHSA-fc83-9jwq-gc2m
crates.io/web-push
Web Push Denial of Service via malicious Web Push endpoint
24 Mar
Fix available
Severity - 6.9 (Medium)
GHSA-vgmh-mqm4-8j88
crates.io/pared
pared Vulnerable to Use After Free in `Parc` and `Prc` Due to Missing Lifetime Constraints
24 Mar
Fix available
Severity - 6.8 (Medium)
Load more...
crates.io - OSV