Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2018-25025 An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly extend the lifetime of a string, leading to memory corruption. Actix Web 0.7.15+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2018-25026 An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can add the Send marker trait to an object that cannot be sent between thre… Actix Web 0.7.15+ Fix from $2,3002021-12-27 CRITICAL 9.8 CVE-2018-25024 An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly coerce an immutable reference into a mutable reference, leadi… Actix Web 0.7.15+ Fix from $2,3002021-12-27 HIGH 7.5 CVE-2021-38512 An issue was discovered in the actix-http crate before 3.0.0-beta.9 for Rust. HTTP/1 request smuggling (aka HRS) can occur, potentially leading to cr… Actix Http 3.0.0+ Fix from $1,9502021-08-10 CRITICAL 9.8 CVE-2020-35902 An issue was discovered in the actix-codec crate before 0.3.0-beta.1 for Rust. There is a use-after-free in Framed. Actix Codec after 0.2.0 Fix from $2,3002020-12-31 CRITICAL 9.1 CVE-2020-35898 An issue was discovered in the actix-utils crate before 2.0.0 for Rust. The Cell implementation allows obtaining more than one mutable reference to t… Actix Utils 2.0.0+ Fix from $2,3002020-12-31 HIGH 7.5 CVE-2020-35901 An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream. Actix Http after 1.0.1 Fix from $1,9502020-12-31 MEDIUM 5.5 CVE-2020-35899 An issue was discovered in the actix-service crate before 1.0.6 for Rust. The Cell implementation allows obtaining more than one mutable reference to… Actix Service 1.0.6+ Fix from $1,6002020-12-31