Vulnerabilities > Rust Lang
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-04-11 | CVE-2015-20001 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Rust-Lang Rust In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe. | 7.5 |
2021-01-26 | CVE-2020-36202 | Cross-site Scripting vulnerability in Rust-Lang Async-H1 An issue was discovered in the async-h1 crate before 2.3.0 for Rust. | 6.1 |
2021-01-04 | CVE-2020-26297 | Cross-site Scripting vulnerability in Rust-Lang Mdbook mdBook is a utility to create modern online books from Markdown files and is written in Rust. | 6.1 |
2020-12-31 | CVE-2020-35920 | Unspecified vulnerability in Rust-Lang Socket2 An issue was discovered in the socket2 crate before 0.3.16 for Rust. | 5.5 |
2020-12-31 | CVE-2020-35908 | Unspecified vulnerability in Rust-Lang Future-Utils An issue was discovered in the futures-util crate before 0.3.2 for Rust. | 5.5 |
2020-12-31 | CVE-2020-35907 | NULL Pointer Dereference vulnerability in Rust-Lang Futures-Task An issue was discovered in the futures-task crate before 0.3.5 for Rust. | 5.5 |
2020-12-31 | CVE-2020-35906 | Use After Free vulnerability in Rust-Lang Futures-Task An issue was discovered in the futures-task crate before 0.3.6 for Rust. | 7.8 |
2020-12-31 | CVE-2020-35905 | Race Condition vulnerability in Rust-Lang Future-Utils An issue was discovered in the futures-util crate before 0.3.7 for Rust. | 4.7 |
2020-12-21 | CVE-2020-26281 | HTTP Request Smuggling vulnerability in Rust-Lang Async-H1 async-h1 is an asynchronous HTTP/1.1 parser for Rust (crates.io). | 7.5 |
2019-09-30 | CVE-2019-16760 | Download of Code Without Integrity Check vulnerability in Rust-Lang Rust Cargo prior to Rust 1.26.0 may download the wrong dependency if your package.toml file uses the `package` configuration key. | 7.5 |