Vuln
·
Scope
首頁
套件
KEV
Critical
深度報告
EN
中
Loading…
crates.io/cargo — 8 CVEs · VulnScope
pkg:crates.io/
cargo
共 8 筆 CVE
HIGH
2
MEDIUM
5
LOW
1
✅ 檢查你的版本
檢查
所有已知漏洞
HIGH
7.9
CVE-2023-38497
Cargo not respecting umask when extracting crate archives
from 0, < 0.72.2
HIGH
7.5
CVE-2019-16760
Cargo prior to Rust 1.26.0 may download the wrong dependency
from 0, < 0.27.0
MEDIUM
6.5
CVE-2026-5222
Cargo can be coerced to share credentials between registries
from 0, < 0.97.0
MEDIUM
6.1
Malicious dependencies can inject arbitrary JavaScript into cargo-generated timing reports
>= 1.60.0, < 1.72
MEDIUM
5.3
Cargo crates in third party registries can override the cached source of other crates
from 0, < 0.97.0
MEDIUM
5.3
Cargo did not verify SSH host keys
from 0, < 0.67.1
MEDIUM
4.2
Cargo extracting malicious crates can fill the file system
from 0, < 0.65.0
LOW
3.9
Cargo extracting malicious crates can corrupt arbitrary files
from 0, < 0.65.0
CVE-2023-40030
CVE-2026-5223
CVE-2022-46176
CVE-2022-36114
CVE-2022-36113