CVE security advisories and vulnerability history for Nix by NixOS.
16
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
1
Public exploits
With known exploit
5.2
Avg CVSS
2019–2026
Last updated
Overview
NixOS Nix has 16 published CVE records since 2019, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 1 have a known public exploit. The average CVSS base score across scored CVEs is 5.2.
This page aggregates every publicly disclosed vulnerability (CVE) affecting NixOS Nix, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of NixOS Nix's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical2
High2
Medium5
Low6
1 additional CVE has no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of NixOS Nix's CVEs are currently listed in CISA's KEV catalog.
Public exploits
1
One of NixOS Nix's CVEs has a known public exploit available.
Affected versions and CVEs
Browse every NixOS Nix version named in a CVE, then pick one to see only the CVEs that affect it.