advisory-db icon indicating copy to clipboard operation
advisory-db copied to clipboard

Security advisory database for Rust crates published through crates.io

Results 181 advisory-db issues
Sort by recently updated
recently updated
newest added

https://github.com/kennytm/mbox https://crates.io/crates/mbox Last commit on 2021-04-01 Last release on 2021-04-01 The author is not responding. Unsoundness: https://github.com/kennytm/mbox/issues/23 2 reverse dependencies on crates.io 140 (transitive) dependents on github

Last commit on 2021-11-28 Last release on 2021-02-18 See https://github.com/thedodd/wither/issues/93

https://github.com/golddranks/multi_mut has been written before Rust had an aliasing model, and before `&mut` had `noalias` annotations in LLVM. It violates Stacked Borrows and is likely UB under current LLVM behavior:...

* https://github.com/nix-rust/nix/issues/1040 argues that an API in the `nix` crate is unsound. I don't understand Unsafe Rust myself, so I'd like to ask: do you think it's worth an `informational...

See this issue: https://github.com/avitex/rust-aliasable/issues/3 The issue closed and “fixed”, but the fix is not published yet (for more than a year now). Only affected version at the moment: `0.1.3` (previous...

Unsound
Waiting-Maintainer

Opened issue in upstream repo: https://github.com/sagebind/isahc/issues/435

The maintainer of the github repo just archived the repo with following message: https://github.com/Byron/google-apis-rs/commit/5ef382311010c19e79caf7f32f2d44fd8ddb328f > These crates have been published under the `google-*` prefix in the early days of the...

https://crates.io/crates/openslide is unmaintained. It has no public dependents. Five years since update at https://github.com/ojskrede/openslide-rust ; PRs ignored https://github.com/ojskrede last activity on GitHub was Sept 2021. https://crates.io/crates/openslide_rs is the crate most...

* Last release on crates.io published 2018 (https://crates.io/crates/cargo-asm) * Last commit on repository on 2019 (https://github.com/gnzlbg/cargo-asm) * Maintenance status unanswered since 2022 (https://github.com/gnzlbg/cargo-asm/issues/244) * Maintainer has been @gnzlbg and he...