Cargo vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-35379Lowcoreutils: uutils coreutils has an Incorrect Provision of Specified Functionality IssueCVE-2026-35374Mediumcoreutils: uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionCVE-2026-35375Lowcoreutils: uutils coreutils has an Improper Handling of Unicode Encoding IssueCVE-2026-35372Mediumcoreutils: uutils coreutils has a UNIX Symbolic Link (Symlink) Following issueCVE-2026-35376Mediumcoreutils: uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionCVE-2026-35344Lowcoreutils: uutils coreutils has an Unchecked Return Value IssueCVE-2026-35364Mediumcoreutils: uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionCVE-2026-35350Mediumcoreutils: uutils coreutils doesn't properly handle setuid and setgid bits when ownership preservation failsCVE-2026-35354Mediumcoreutils: uutils coreutils has a Time-of-Check to Time-of-Use (TOCTOU) race conditionCVE-2026-35351Mediumcoreutils: uutils coreutils doesn't preserve file ownership during moves across different filesystem boundariesCVE-2026-35352Highcoreutils: uutils coreutils has a Time-of-Check to Time-of-Use (TOCTOU) race conditionCVE-2026-35360Mediumcoreutils: uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionCVE-2026-35359Mediumcoreutils: uutils coreutils has a Link Following issueCVE-2026-35357Mediumcoreutils: uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionCVE-2026-35348Mediumcoreutils: uutils coreutils has an Uncaught Exception When Encountering Valid but Non-UTF-8 PathsCVE-2026-35367Lowcoreutils: uutils coreutils has an Incorrect Permission Assignment for Critical ResourceCVE-2026-35368Highcoreutils: uutils coreutils has an Untrusted Search PathCVE-2026-35345Mediumcoreutils: uutils coreutils has a Link Following IssueGHSA-XHJ4-VRGC-HR34Mediumactix-http: actix-http has HTTP/1.1 CL.TE Request Smuggling CVE-2026-41197Criticalbrillig: Brillig: Heap corruption in foreign call results with nested tuple arraysCVE-2026-41583Criticalzebrad: Zebra Vulnerable to Consensus Divergence in Transparent Sighash Hash-Type HandlingCVE-2026-41585Mediumzebra-rpc: Zebra Vulnerable to Denial of Service via Interrupted JSON-RPC Requests from Authenticated ClientsCVE-2026-41584Criticalzebrad: Zebra has rk Identity Point Panic in Transaction VerificationCVE-2026-40881Mediumzebrad: Zebra: addr/addrv2 Deserialization Resource ExhaustionCVE-2026-40880Highzebra-consensus: Zebra: Cached Mempool Verification Bypasses Consensus Rules for Ahead-of-Tip Blocks

Stop the waste.
Protect your environment with Kodem.