VYPR

advisory-db

by Rustsec

CVEs (3)

  • CVE-2026-77651CriAug 21, 2026
    risk 0.64cvss 9.8epss

    The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.

  • CVE-2026-77650CriAug 21, 2026
    risk 0.64cvss 9.8epss

    The append-only-vec crate 0.1.9 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.

  • CVE-2026-77649CriAug 21, 2026
    risk 0.64cvss 9.8epss

    The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.