Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
cargo deno Security Advisories
Browse all Security Advisories for cargo deno
Loading...
High
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
GSA_kwCzR0hTQS0yM3J4LWMzZzUtaHY5d84AA73I
Deno permission escalation vulnerability via open of privileged files with missing `--deny` flagEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
High
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
GSA_kwCzR0hTQS02cTR3LTl4NTYtcm13cc4AA5zQ
Deno arbitrary file descriptor close via `op_node_ipc_pipe()` leading to permission prompt bypassEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
Moderate
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
GSA_kwCzR0hTQS01ZnJ3LTRyd3EteGhjcs4AA5zP
Deno's improper suffix match testing for DENO_AUTH_TOKENSEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
High
Ecosystems: cargo
Packages: deno_runtime, deno
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: 8 months ago
GSA_kwCzR0hTQS1tNHBxLWZ2MnctNmhyd84AA5xp
Deno's deno_runtime vulnerable to interactive permission prompt spoofing via improper ANSI strippingEcosystems: cargo
Packages: deno_runtime, deno
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: 8 months ago
High
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
GSA_kwCzR0hTQS13cnF2LXBmNmotbXFqcM4AA5xo
Deno's Node.js Compatibility Runtime has Cross-Session Data ContaminationEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
Moderate
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
GSA_kwCzR0hTQS1ocnFyLWp2OHctdjlqaM4AA5xa
Insufficient permission checking in `Deno.makeTemp*` APIsEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
High
Ecosystems: cargo
Packages: deno_runtime, deno
Source: GitHub Advisory Database
Blast Radius: 13.4
Published: over 1 year ago
GSA_kwCzR0hTQS12YzUyLWd3bTMtOHYyZs4AAzkS
Missing "--allow-net" permission check for built-in Node modulesEcosystems: cargo
Packages: deno_runtime, deno
Source: GitHub Advisory Database
Blast Radius: 13.4
Published: over 1 year ago
Moderate
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS1qYzk3LWgzaDktN3hoNs4AAygy
Regular Expression Denial of Service in Deno.upgradeWebSocket APIEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
High
Ecosystems: cargo
Packages: deno, deno_runtime
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: over 1 year ago
GSA_kwCzR0hTQS12cTY3LXJwOTMtNjVxZs4AAyUO
Interactive `run` permission prompt spoofing via improper ANSI neutralizationEcosystems: cargo
Packages: deno, deno_runtime
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: over 1 year ago
High
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
GSA_kwCzR0hTQS1tYzUyLWpwbTItY3FoNs4AAxFx
Deno is vulnerable to race condition via interactive permission prompt spoofingEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
High
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS02N2htLTI3bXgtOWNnN84AArgf
Link Following in DenoEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Critical
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
GSA_kwCzR0hTQS04MzhoLWpxcDYtY2YyZs02gA
Sandbox bypass leading to arbitrary code execution in DenoEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Critical
Ecosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 3 years ago
GSA_kwCzR0hTQS14cHdqLTd2OHEtbWNnas0V-g
Deno's static imports inside dynamically imported modules do not adhere to permission checksEcosystems: cargo
Packages: deno
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 3 years ago
Statistics
Advisories: 20,359
Packages: 8,934
Repositories: 1
Ecosystems: 12
Packages: 8,934
Repositories: 1
Ecosystems: 12
Filter by Severity
Filter by Ecosystem
Filter by Package
openssl-src
26
ckb
22
wasmtime
18
rusqlite
16
deno
13
surrealdb
12
openssl
8
libpulse-binding
7
hyper
7
sized-chunks
6
apollo-router
6
smallvec
6
Simple-Wayland-HotKey-Daemon
6
cargo
6
cranelift-codegen
6
bottlerocket/update-operator
5
lock_api
5
comrak
5
tauri
5
xcb
5
frontier
5
messagepack-rs
5
raw-cpuid
4
tremor-script
4
pleaser
4
surrealdb-core
4
gitoxide
4
tokio
4
actix-web
4
deno_runtime
4
evm
4
tough
3
quiche
3
ammonia
3
cgc
3
solana_rbpf
3
flatbuffers
3
arr
3
arrow
3
id-map
3
crossbeam
3
routinator
3
fltk
3
nanorand
3
s2n-quic
3
slice-deque
3
h2
3
crossbeam-channel
3
anoncreds-clsignatures
3
ursa
3
gix
3
gitoxide-core
3
ntpd
3
russh
3
gix-path
3
matrix-sdk-crypto
3
grin
3
acc_reader
3
apache-avro
3
streebog
2
ticketed_lock
2
failure
2
slack-morphism
2
binjs_io
2
pyo3
2
mopa
2
diesel
2
crayon
2
multiqueue
2
Deno
2
rocket
2
ordnung
2
svix
2
memoffset
2
lru
2
abi_stable
2
abomonation
2
simple_asn1
2
derive-com-impl
2
crypto2
2
parc
2
arenavec
2
tectonic_xdv
2
ash
2
columnar
2
cosmwasm-vm
2
github.com/CosmWasm/wasmvm
2
spin
2
cocoon
2
libgit2-sys
2
gix-worktree-state
2
gix-worktree
2
gix-index
2
http
2
vodozemac
2
phonenumber
2
gix-transport
2
bumpalo
2
hyper-staticfile
2
rand_core
2
image
2
rdiff
2
rust-embed
2
sequoia-openpgp
2
evm-core
2
bite
2
gfx-auxil
2
futures-util
2
metrics-util
2
vec-const
2
pnet
2
trust-dns-server
2
stack_dst
2
lettre
2
tower-http
2
net2
2
nix
2
molecule
2
sodiumoxide
2
actix-http
2
generator
2
mio
2
sha2
2
async-h1
2
coreos-installer
2
futures-task
2
flumedb
2
csv-sniffer
2
internment
2
traitobject
2
vm-memory
2
tar
2
arti
2
pywasm3
2
toodee
2
v9
2
inventory
2
libp2p-core
2
tor-circmgr
2
syncpool
2
wasm3
2
biscuit-auth
2
oqs
2
nano-id
2
bronzedb-protocol
2
slock
2
buffoon
2
array-macro
2
rsa
2
opcua
2
zerocopy
2
ozone
2
quinn-proto
2
rulex
2
libsecp256k1
2
reorder
2
signal-simple
2
s2n-tls
2
async-graphql
2
simple-slab
2
tiny_future
2
ncurses
2
cache
2
conquer-once
1
Microsoft.NETCore.App.Runtime.Mono.ios-arm.Msi.arm64
1
buttplug
1
Microsoft.NETCore.App.Runtime.Mono.ios-arm
1
Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.arm64
1
actix-codec
1
aovec
1
Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.x64
1
dync
1
Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.x64
1
Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.x86
1
actix-service
1
Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.arm64
1
Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.x86
1
Microsoft.NETCore.App.Runtime.Mono.browser-wasm
1
Microsoft.NETCore.App.Runtime.Mono.linux-arm64
1
Microsoft.NETCore.App.Runtime.Mono.linux-arm
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.x86
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.x64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.arm64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.x86
1
librsvg
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.x64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.arm64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.x86
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.x64
1
rcu_cell
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.arm64
1
Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64
1
async-nats
1
Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.x86
1
cryptography
1
fil-ocl
1
Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.x64
1
Microsoft.NETCore.App.Runtime.Mono.ios-arm64.Msi.arm64
1
Filter by Repository