Cargo vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2020-36452Criticalarray-tools: Memory corruption in array-toolsCVE-2020-36453Highscottqueue: Data races in scottqueueCVE-2020-36451Highrcu_cell: Data races in rcu_cellCVE-2020-36448Highcache: Data races in cacheCVE-2020-36449Highkekbit: Command injection in kekbitCVE-2020-36447Highv9: Data race in v9CVE-2020-36471Mediumgenerator: Data races in generatorCVE-2020-36469Mediumappendix: Data races in appendixCVE-2020-36470Mediumdisrustor: Data race in disrustorCVE-2020-36468Mediumcgc: Non-atomic writes in cgcCVE-2020-15093Hightough: Improper verification of signature threshold in toughGHSA-GHPQ-VJXW-CH5WHighlibpulse-binding: Use after free in libpulse-bindingCVE-2020-25576Criticalrand_core: Unaligned memory access in rand_coreCVE-2020-28247Mediumlettre: Argument injection in lettreCVE-2020-26235Mediumtime: Segmentation fault in timeCVE-2020-26297HighmdBook: XSS in mdBookCVE-2021-21299Mediumhyper: HTTP Request Smuggling in hyperCVE-2020-36467Mediumcgc: Multiple soundness issues in cgcCVE-2020-36466Mediumcgc: Data races in cgcCVE-2020-36465Highgeneric-array: Use after free in generic-arrayCVE-2020-36464Highheapless: Use after free in heaplessCVE-2020-36460Highmodel: Data races in modelCVE-2020-36461Mediumnoise_search: Data races in noise_searchCVE-2021-38195Criticallibsecp256k1: Overflow in libsecp256k1CVE-2021-38196Highbetter-macro: Remote code execution in better-macro

Stop the waste.
Protect your environment with Kodem.