{"id":"RUSTSEC-2026-0214","title":"gumdrop is unmaintained","summary":"gumdrop is unmaintained","severity":"none","vendor":"gumdrop","product":"gumdrop","ecosystem":"rust","affected":["gumdrop >= 0.0.0-0"],"published":"2026-07-22","updated":"2026-07-23","source":"OSV","sourceUrl":"https://osv.dev/vulnerability/RUSTSEC-2026-0214","references":[{"url":"https://crates.io/crates/gumdrop"},{"url":"https://rustsec.org/advisories/RUSTSEC-2026-0214.html"},{"url":"https://github.com/murarth/gumdrop/issues/63"}],"tags":["osv","rust"],"ingestedAt":"2026-07-23T19:05:54.679Z","slug":"RUSTSEC-2026-0214","body":"## Overview\n\nThe gumdrop crate is unmaintained, and all versions are affected.\n\nRecommended alternatives:\n\n- [clap](https://crates.io/crates/clap) is the most popular by far\n- [bpaf](https://crates.io/crates/bpaf) is a more lightweight alternative\n\n## Affected packages\n\n- `gumdrop >= 0.0.0-0`\n\n## Remediation\n\nRefer to the advisory for the patched release.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}