VulnSea

Tagged “rust”

CVEs tagged rust, newest first.

371 CVEsRSS

RUSTSEC-2026-0280None
2w ago

`greentic-setup-dev` 1.3.34027618345 was removed from crates.io due to containing malicious code

`greentic-setup-dev` 1.3.34027618345 was removed from crates.io due to containing malicious code

Sunlitgreentic-setup-dev · greentic-setup-devvia OSV
RUSTSEC-2026-0292None
2w ago

Double free / use-after-free in `Chunk` and `InlineArray` removal methods when an element's `Drop` panics

Double free / use-after-free in `Chunk` and `InlineArray` removal methods when an element's `Drop` panics

Sunlitimbl-sized-chunks · imbl-sized-chunksvia OSV
CVE-2026-63733Medium· 4.3
2w ago

SurrealDB: Writes in a PERMISSIONS clause bypass table permissions

SurrealDB: Writes in a PERMISSIONS clause bypass table permissions

Sunlitsurrealdb-core · surrealdb-coreEPSS 0.20%via GHSA
CVE-2026-63735High· 8.1
2w ago

SurrealDB: Custom API route lets authenticated callers override namespace/database scope via URL path

SurrealDB: Custom API route lets authenticated callers override namespace/database scope via URL path

Twilightsurrealdb · surrealdbEPSS 0.37%via GHSA
CVE-2026-53600Medium
2w ago

async-tar is a tar archive reading/writing library for async Rust

async-tar is a tar archive reading/writing library for async Rust. Prior to version 0.6.1, async-tar mis-applies a buffered PAX size extension to an intermediary extension header (a GNU longname L, a GNU longlink K, or a PAX x/g header) …

Sunlitasync-tar · async-tarEPSS 0.32%via NVD
CVE-2026-78422None
3w ago

`zbus_polkit`: authorization bypass via PID reuse

`zbus_polkit`: authorization bypass via PID reuse

Sunlitzbus_polkit · zbus_polkitEPSS 0.09%via OSV
CVE-2026-82250Medium· 6.5
3w ago

gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)

gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)

Sunlitgix-packetline · gix-packetlineEPSS 0.24%via OSV
CVE-2026-55406Medium
3w ago

Buffa has a Use-After-Free in OwnedView via Unsound 'static Lifetime Promotion in Deref

Buffa has a Use-After-Free in OwnedView via Unsound 'static Lifetime Promotion in Deref

Sunlitbuffa · buffaEPSS 0.19%via GHSA
CVE-2026-55407Medium
3w ago

Buffa Vulnerable to Memory Exhaustion Denial of Service in decode_unknown_field via Unbounded Allocation

Buffa Vulnerable to Memory Exhaustion Denial of Service in decode_unknown_field via Unbounded Allocation

Sunlitbuffa · buffaEPSS 0.76%via GHSA
CVE-2026-54788High· 7.5
3w ago

dd-trace-rs provides Datadog application performance monitoring for Rust

dd-trace-rs provides Datadog application performance monitoring for Rust. From 0.1.0 until 0.3.3, datadog-opentelemetry/src/propagation/tracecontext.rs parses the W3C tracestate header and collects every semicolon-separated key and value…

Twilightdatadog-opentelemetry · datadog-opentelemetryEPSS 0.56%via NVD
GHSA-2vh6-hw4j-32wwMedium· 6.5
3w ago

gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)

gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)

Sunlitgix-packetline · gix-packetlinevia GHSA
RUSTSEC-2026-0272None
3w ago

Panic-safety unsoundness in `Stack::pop`, `Fifo::pop_front` and `Value::replace_stable` (use-after-free / double-free)

Panic-safety unsoundness in `Stack::pop`, `Fifo::pop_front` and `Value::replace_stable` (use-after-free / double-free)

Sunlitstack_dst · stack_dstvia OSV
RUSTSEC-2026-0284None
3w ago

Double free in `Map::into_iter` and an uninitialized `Arc` in `SharedIncin::clear`

Double free in `Map::into_iter` and an uninitialized `Arc` in `SharedIncin::clear`

Sunlitlockfree · lockfreevia OSV
RUSTSEC-2026-0277None
3w ago

Path traversal in apimock-server's file-serving fallback

Path traversal in apimock-server's file-serving fallback

Sunlitapimock-server · apimock-servervia OSV
RUSTSEC-2026-0276None
3w ago

Path traversal in apimock's file-serving fallback

Path traversal in apimock's file-serving fallback

Sunlitapimock · apimockvia OSV
CVE-2026-46369High· 7.5
3w ago

Nimiq is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm

Nimiq is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Through 1.5.0, the validity store uses a strict lower-bound comparison that expires a stored transaction too early relative t…

Twilightnimiq-blockchain · nimiq-blockchainEPSS 0.39%via NVD
RUSTSEC-2026-0267None
4w ago

Panic-safety unsoundness in `BitVecCore::clear` (double-free / use-after-free)

Panic-safety unsoundness in `BitVecCore::clear` (double-free / use-after-free)

Sunlitstable-vec · stable-vecvia OSV
GHSA-fx4f-mhw4-qm7jMedium
4w ago

vibeio-http has a DoS vulnerability in HTTP/1.x chunked encoding parser triggered by maliciously crafted chunk lengths

vibeio-http has a DoS vulnerability in HTTP/1.x chunked encoding parser triggered by maliciously crafted chunk lengths

Sunlitvibeio-http · vibeio-httpvia GHSA
GHSA-5x78-73v4-xg6wHigh
4w ago

postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service

postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service

Twilightpostgres-protocol · postgres-protocolvia GHSA
GHSA-rgqc-3x5p-6gwgMedium
4w ago

postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service

postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service

Sunlitpostgres-protocol · postgres-protocolvia GHSA
GHSA-3gjw-f78c-vvpwMedium
4w ago

tokio-postgres: Panic on a `DataRow` with fewer fields than columns allows denial of service

tokio-postgres: Panic on a `DataRow` with fewer fields than columns allows denial of service

Sunlittokio-postgres · tokio-postgresvia GHSA
CVE-2026-53530High
1mo ago

RaTeX is a KaTeX-compatible math rendering engine written in Rust

RaTeX is a KaTeX-compatible math rendering engine written in Rust. Prior to version 0.1.11, the public parser entrypoint `ratex_parser::parse(&str)` panics on the 9-byte input `\verbéxé` (i.e. `\verb` followed by the non-ASCII delimiter …

Twilightratex-parser · ratex-parserEPSS 0.31%via NVD
CVE-2026-53531Medium
1mo ago

RaTeX is a KaTeX-compatible math rendering engine written in Rust

RaTeX is a KaTeX-compatible math rendering engine written in Rust. Prior to version 0.1.11, RaTeX’s recursive-descent parser recurses one (or more) native stack frame per nesting level at `{`, `\left`, `\sqrt{`, `^{`, etc, with no maximu…

Sunlitratex-parser · ratex-parserEPSS 0.31%via NVD
CVE-2026-63481Medium
1mo ago

Hurl is a command line tool that runs and tests HTTP requests defined in plain text files

Hurl is a command line tool that runs and tests HTTP requests defined in plain text files. In version 8.0.1 and earlier, the redirect handling in packages/hurl/src/http/client.rs strips Authorization and Cookie headers and basic-auth cre…

Sunlithurl · hurlEPSS 0.47%via NVD
RUSTSEC-2026-0269None
1mo ago

Filesystem sandbox escape when paths or symlinks contain trailing slashes

Filesystem sandbox escape when paths or symlinks contain trailing slashes

Sunlitwasmtime · wasmtimevia OSV
RUSTSEC-2026-0268None
1mo ago

Guest controlled-size host heap allocation through WASIp3 streams

Guest controlled-size host heap allocation through WASIp3 streams

Sunlitwasmtime · wasmtimevia OSV
MAL-2026-14340None
1mo ago

Malicious code in tinymember (crates.io)

Malicious code in tinymember (crates.io)

Sunlittinymember · tinymembervia OSV
MAL-2026-14339None
1mo ago

Malicious code in proc_macro_en (crates.io)

Malicious code in proc_macro_en (crates.io)

Sunlitproc-macro-en · proc-macro-envia OSV
MAL-2026-14338None
1mo ago

Malicious code in proc_macro1 (crates.io)

Malicious code in proc_macro1 (crates.io)

Sunlitproc-macro1 · proc-macro1via OSV
MAL-2026-14337None
1mo ago

Malicious code in internment (crates.io)

Malicious code in internment (crates.io)

Sunlitinternment · internmentvia OSV
CVEs tagged “rust” — page 2 · VulnSea