Vulnerabilities > Rust Lang

DATE CVE VULNERABILITY TITLE RISK
2021-04-11 CVE-2015-20001 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Rust-Lang Rust
In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe.
network
low complexity
rust-lang CWE-119
7.5
2021-01-26 CVE-2020-36202 Cross-site Scripting vulnerability in Rust-Lang Async-H1
An issue was discovered in the async-h1 crate before 2.3.0 for Rust.
network
low complexity
rust-lang CWE-79
6.1
2021-01-04 CVE-2020-26297 Cross-site Scripting vulnerability in Rust-Lang Mdbook
mdBook is a utility to create modern online books from Markdown files and is written in Rust.
network
low complexity
rust-lang CWE-79
6.1
2020-12-31 CVE-2020-35920 Unspecified vulnerability in Rust-Lang Socket2
An issue was discovered in the socket2 crate before 0.3.16 for Rust.
local
low complexity
rust-lang
5.5
2020-12-31 CVE-2020-35908 Unspecified vulnerability in Rust-Lang Future-Utils
An issue was discovered in the futures-util crate before 0.3.2 for Rust.
local
low complexity
rust-lang
5.5
2020-12-31 CVE-2020-35907 NULL Pointer Dereference vulnerability in Rust-Lang Futures-Task
An issue was discovered in the futures-task crate before 0.3.5 for Rust.
local
low complexity
rust-lang CWE-476
5.5
2020-12-31 CVE-2020-35906 Use After Free vulnerability in Rust-Lang Futures-Task
An issue was discovered in the futures-task crate before 0.3.6 for Rust.
local
low complexity
rust-lang CWE-416
7.8
2020-12-31 CVE-2020-35905 Race Condition vulnerability in Rust-Lang Future-Utils
An issue was discovered in the futures-util crate before 0.3.7 for Rust.
local
high complexity
rust-lang CWE-362
4.7
2020-12-21 CVE-2020-26281 HTTP Request Smuggling vulnerability in Rust-Lang Async-H1
async-h1 is an asynchronous HTTP/1.1 parser for Rust (crates.io).
network
high complexity
rust-lang CWE-444
7.5
2019-09-30 CVE-2019-16760 Download of Code Without Integrity Check vulnerability in Rust-Lang Rust
Cargo prior to Rust 1.26.0 may download the wrong dependency if your package.toml file uses the `package` configuration key.
network
low complexity
rust-lang CWE-494
7.5