Cargo vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2020-36511Highbite: Use of Uninitialized Resource in bite.CVE-2021-45682Criticalbronzedb-protocol: Use of Uninitialized Resource in bronzedb-protocol.CVE-2021-45681Highderive-com-impl: Out-of-bounds Write in derive-com-implCVE-2021-45680Highvec-const: Out-of-bounds Write in vec-constCVE-2021-45683Criticalbinjs_io: Use of Uninitialized Resource in binjs_io.CVE-2021-45694Highrdiff: Window may read from uninitialized memory locations in rdiffCVE-2021-45686Criticalcsv-sniffer: Use of Uninitialized Resource in csv-sniffer.CVE-2021-45685Criticalcolumnar: columnar: Read on uninitialized buffer may cause UB (ColumnarReadExt::read_typed_vec())CVE-2021-45687Criticalraw-cpuid: Deserialization of Untrusted Data in rust-cpuidCVE-2021-45688Criticalash: Use of Uninitialized Resource in ash.CVE-2021-45693Criticalmessagepack-rs: Use of Uninitialized Resource in messagepack-rs.CVE-2021-45691Criticalmessagepack-rs: Use of Uninitialized Resource in messagepack-rsCVE-2021-45692Criticalmessagepack-rs: Use of Uninitialized Resource in messagepack-rs.CVE-2021-45689Criticalgfx-auxil: Use of Uninitialized Resource in gfx-auxilCVE-2021-45690Criticalmessagepack-rs: Use of Uninitialized Resource in messagepack-rs.CVE-2021-45695Criticalmopa: Incorrect reliance on Trait memory layout in mopaCVE-2021-45698Criticalckb: RPC call failure in ckbCVE-2021-45697Criticalmolecule: The `total_size` function for partial read the length of any `FixVec` is incorrect in molecule.CVE-2021-45696Criticalsha2: Incorrect hash in sha2CVE-2021-45701Criticaltremor-script: Use After Free in tremor-scriptCVE-2021-45700Highckb: Denial of Service in ckbCVE-2021-45699Highckb: Allocation of Resources Without Limits or Throttling in ckbCVE-2021-45703Criticaltectonic_xdv: Use of Uninitialized Resource in tectonic_xdvCVE-2021-45702Hightremor-script: Use After Free in tremor-scriptCVE-2021-45705Criticalnanorand: Pointer dereference in nanorand

Stop the waste.
Protect your environment with Kodem.