VYPR

rpm package

opensuse/rust&distro=openSUSE Leap 15.4

pkg:rpm/opensuse/rust&distro=openSUSE%20Leap%2015.4

Vulnerabilities (1)

  • CVE-2023-40030Aug 24, 2023
    affected < 1.72.0-150400.24.24.1fixed 1.72.0-150400.24.24.1

    Cargo downloads a Rust project’s dependencies and compiles the project. Starting in Rust 1.60.0 and prior to 1.72, Cargo did not escape Cargo feature names when including them in the report generated by `cargo build --timings`. A malicious package included as a dependency may inj