An issue was discovered in the failure crate through 0.1.5 for Rust. It may introduce "compatibility hazards" in some applications, and has a type confusion flaw when downcasting. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: This may overlap CVE-2019-25010
{
"unresolved_ranges": [
{
"cpes": [
"cpe:2.3:a:failure_project:failure:*:*:*:*:*:rust:*:*"
],
"source": "CPE_RANGE",
"extracted_events": [
{
"last_affected": "0.1.8"
}
],
"vendor_product": "failure_project:failure"
}
]
}