pkg:crates.io/rustfs
共 12 筆 CVECRITICAL2HIGH2MEDIUM1
✅ 檢查你的版本
所有已知漏洞
- >= 1.0.0-alpha.13, < 1.0.0-alpha.78
- CRITICAL9.0CVE-2026-27822Rust has Critical Stored XSS in Preview Modal, leading to Administrative Account Takeoverfrom 0, < 1.0.0-alpha.83
- HIGH8.3CVE-2026-40937RustFS: Missing admin authorization on notification target endpoints allows unauthenticated configuration of event webhooksfrom 0, <= 0.0.2
- >= 1.0.0-alpha.56, < 1.0.0-alpha.83
- MEDIUM4.3CVE-2026-39360RustFS has an authorization bypass in multipart UploadPartCopy enables cross-bucket object exfiltrationfrom 0, <= 0.0.2
- >= 1.0.0-alpha.13, < 1.0.0-alpha.82
- from 0, < 1.0.0-alpha.78
- >= 1.0.0-alpha.1, < 1.0.0-alpha.80
- —CVE-2026-22043RustFS has IAM deny_only Short-Circuit that Allows Privilege Escalation via Service Account Minting>= 1.0.0-alpha.13, < 1.0.0-alpha.79
- from 0, < 1.0.0-alpha.79
- >= 1.0.0-alpha.13, < 1.0.0-alpha.78
- >= 1.0.0-alpha.13, < 1.0.0-alpha.79