Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-64f8-pjgr-9wmr
  • crates.io/surrealdb
  • crates.io/surrealdb-core
Untrusted Query Object Evaluation in RPC API 21 hours ago
  • Fix available
  • Severity - 8.7 (High)
GHSA-m8rp-vv92-46c7
  • crates.io/gix-path
gix-path improperly resolves configuration path reported by Git 5 days ago
  • Fix available
  • Severity - 5.3 (Medium)
RUSTSEC-2024-0371
  • crates.io/gix-path
gix-path improperly resolves configuration path reported by Git 6 days ago
  • Fix available
  • Severity - 6.0 (Medium)
GHSA-rwq6-crjg-9cpw
  • crates.io/ic_cdk
ic-cdk has a memory leak when calling a canister method via `ic_cdk::call` 6 days ago
  • Fix available
  • Severity - 8.7 (High)
RUSTSEC-2024-0372
  • crates.io/ic-cdk
Memory leak when calling a canister method via `ic_cdk::call` 05 Sep
  • Fix available
  • Severity - 7.5 (High)
GHSA-g5jh-57wm-p79m
  • crates.io/aardvark-dns
Missing connection timeout in Aardvark-dns 04 Sep
  • Fix available
  • Severity - 8.7 (High)
GHSA-p2q9-36vw-c468
  • crates.io/olm-sys
olm-sys: wrapped library unmaintained, potentially vulnerable 03 Sep
  • No fix available
GHSA-vr26-jcq5-fjj8
  • crates.io/quinn-proto
Denial of service in quinn-proto when using `Endpoint::retry()` 03 Sep
  • Fix available
  • Severity - 8.7 (High)
GHSA-v26r-4c9c-h3j6
  • crates.io/gix-path
gix-path uses local config across repos when it is the highest scope 03 Sep
  • Fix available
  • Severity - 2.0 (Low)
GHSA-gprj-6m2f-j9hx
  • npm/pagefind
  • npm/@pagefind/default-ui
  • npm/@pagefind/modular-ui
  • crates.io/pagefind
DOM clobbering could escalate to Cross-site Scripting (XSS) 03 Sep
  • Fix available
  • Severity - 6.4 (Medium)
RUSTSEC-2024-0368
  • crates.io/olm-sys
olm-sys: wrapped library unmaintained, potentially vulnerable 02 Sep
  • No fix available
RUSTSEC-2024-0373
  • crates.io/quinn-proto
`Endpoint::retry()` calls can lead to panicking 02 Sep
  • Fix available
  • Severity - 7.5 (High)
RUSTSEC-2024-0370
  • crates.io/proc-macro-error
proc-macro-error is unmaintained 01 Sep
  • No fix available
RUSTSEC-2024-0367
  • crates.io/gix-path
gix-path uses local config across repos when it is the highest scope 31 Aug
  • Fix available
  • Severity - 2.5 (Low)
GHSA-75qh-gg76-p2w4
  • crates.io/cosmwasm-vm
  • Go/github.com/CosmWasm/wasmvm
CWA-2023-004: Excessive number of function parameters in compiled Wasm 27 Aug
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-x6xq-whh3-gg32
  • crates.io/apollo-router
Apollo Router Coprocessors may cause Denial-of-Service when handling request bodies 27 Aug
  • Fix available
  • Severity - 8.7 (High)