crates.io Vulnerabilities
CVE security advisories and vulnerability history for crates.io.
Overview
crates.io has 527 published CVE records since 2017, of which 1 are in CISA's Known Exploited Vulnerabilities catalog and 43 have a known public exploit. The average CVSS base score across scored CVEs is 6.2.
This page aggregates every publicly disclosed vulnerability (CVE) affecting crates.io products, with severity breakdowns, the most-affected products, the most common weakness types, and the latest disclosures.