Update Rust crate assert_cmd to 2.1.2#89
Security Report
The Security Check found 38 vulnerabilities.
| Vulnerability | Severity | Exploit Maturity | EPSS | Vulnerable Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|---|
CVE-2026-22184Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
9.8 | Not Defined | 0.1% | libz-sys-1.1.8.crate | None | ||
CVE-2025-1744Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> ❌ libgit2-sys-0.14.2+1.5.1.crate (Vulnerable Library) |
9.8 | Not Defined | 0.3% | libgit2-sys-0.14.2+1.5.1.crate | None | ||
CVE-2025-1744Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
9.8 | Not Defined | 0.3% | libz-sys-1.1.8.crate | None | ||
CVE-2023-45853Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
9.8 | Not Defined | 1.4000001% | libz-sys-1.1.8.crate | Upgrade to version: zlib - 1.3.1 | None | |
CVE-2022-37434Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> ❌ libgit2-sys-0.14.2+1.5.1.crate (Vulnerable Library) |
9.8 | Not Defined | 92.5% | libgit2-sys-0.14.2+1.5.1.crate | Upgrade to version: zlib - 1.2.13 | None | |
CVE-2022-37434Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
9.8 | Not Defined | 92.5% | libz-sys-1.1.8.crate | Upgrade to version: zlib - 1.2.13 | None | |
CVE-2020-25573Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> riker-patterns-0.4.2.crate (Root Library) -> riker-0.4.2.crate -> config-0.10.1.crate -> serde-hjson-0.9.1.crate -> ❌ linked-hash-map-0.3.0.crate (Vulnerable Library) |
9.8 | Not Defined | 0.6% | linked-hash-map-0.3.0.crate | Upgrade to version: linked-hash-map - 0.5.3 | None | |
CVE-2020-25573Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> riker-0.4.2.crate (Root Library) -> config-0.10.1.crate -> serde-hjson-0.9.1.crate -> ❌ linked-hash-map-0.3.0.crate (Vulnerable Library) |
9.8 | Not Defined | 0.6% | linked-hash-map-0.3.0.crate | Upgrade to version: linked-hash-map - 0.5.3 | None | |
WS-2023-0045Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> tempfile-3.3.0.crate (Root Library) -> ❌ remove_dir_all-0.5.3.crate (Vulnerable Library) |
9.1 | Not Defined | remove_dir_all-0.5.3.crate | Upgrade to version: remove_dir_all - 0.8.0 | None | ||
CVE-2024-24577Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> ❌ libgit2-sys-0.14.2+1.5.1.crate (Vulnerable Library) |
8.6 | Not Defined | 0.3% | libgit2-sys-0.14.2+1.5.1.crate | None | ||
CVE-2023-4807Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
7.8 | Not Defined | 0.8% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 1.1.1w | None | |
WS-2023-0083Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ openssl-sys-0.9.80.crate (Vulnerable Library) |
7.5 | Not Defined | openssl-sys-0.9.80.crate | Upgrade to version: openssl - 0.10.48 | None | ||
WS-2023-0082Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ openssl-sys-0.9.80.crate (Vulnerable Library) |
7.5 | Not Defined | openssl-sys-0.9.80.crate | Upgrade to version: openssl - 0.10.48 | None | ||
WS-2023-0081Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ openssl-sys-0.9.80.crate (Vulnerable Library) |
7.5 | Not Defined | openssl-sys-0.9.80.crate | Upgrade to version: openssl - 0.10.48 | None | ||
WS-2022-0013Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> riker-patterns-0.4.2.crate (Root Library) -> riker-0.4.2.crate -> ❌ dashmap-3.11.10.crate (Vulnerable Library) |
7.5 | Not Defined | dashmap-3.11.10.crate | Upgrade to version: dashmap - 5.1.0 | None | ||
WS-2022-0013Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> riker-0.4.2.crate (Root Library) -> ❌ dashmap-3.11.10.crate (Vulnerable Library) |
7.5 | Not Defined | dashmap-3.11.10.crate | Upgrade to version: dashmap - 5.1.0 | None | ||
CVE-2024-27308Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> actix-web-4.3.0.crate (Root Library) -> actix-codec-0.5.0.crate -> tokio-1.24.2.crate -> ❌ mio-0.8.5.crate (Vulnerable Library) |
7.5 | Not Defined | 0.70000005% | mio-0.8.5.crate | Upgrade to version: mio - 0.8.11 | None | |
CVE-2023-26964Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> actix-web-4.3.0.crate (Root Library) -> actix-http-3.3.0.crate -> ❌ h2-0.3.15.crate (Vulnerable Library) |
7.5 | Not Defined | 0.4% | h2-0.3.15.crate | None | ||
CVE-2023-0464Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
7.5 | Not Defined | 0.8% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 1.0.2zh,openssl - 3.1.3,openssl - 1.1.1w,openssl - 3.0.12 | None | |
CVE-2023-0215Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
7.5 | Not Defined | 0.5% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 3.0.12,openssl - 1.1.1w | None | |
CVE-2022-4450Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
7.5 | Not Defined | 0.1% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 3.0.12,openssl - 1.1.1w | None | |
CVE-2018-25032Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
7.5 | Not Defined | 0.1% | libz-sys-1.1.8.crate | Upgrade to version: zlib - 1.2.12 | None | |
CVE-2023-0286Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
7.4 | Not Defined | 88.4% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl-3.0.8;cryptography - 39.0.1;openssl-src - 111.25.0+1.1.1t,300.0.12+3.0.8,openssl - 3.0.12,openssl - 1.1.1w | None | |
CVE-2021-41248Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> actix-web-4.3.0.crate (Root Library) -> actix-codec-0.5.0.crate -> ❌ tokio-util-0.7.4.crate (Vulnerable Library) |
7.1 | Not Defined | 0.4% | tokio-util-0.7.4.crate | Upgrade to version: graphiql - 1.4.7,graphiql - 1.4.7,https://github.com/graphql/graphiql.git - graphiql@1.4.7,graphiql - 1.4.7,https://github.com/graphql/graphiql.git - graphiql@1.4.7,graphiql - 1.4.7,graphiql - 1.4.7 | None | |
WS-2020-0368Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> ❌ libz-sys-1.1.8.crate (Vulnerable Library) |
6.5 | Not Defined | libz-sys-1.1.8.crate | None | |||
CVE-2023-2650Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
6.5 | Not Defined | 91.9% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 1.0.2zh,openssl - 3.1.3,openssl - 1.1.1w,openssl - 3.0.12 | None | |
CVE-2023-48795Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> ❌ libssh2-sys-0.2.23.crate (Vulnerable Library) |
5.9 | Not Defined | 57.8% | libssh2-sys-0.2.23.crate | Upgrade to version: golang.org/x/crypto - v0.0.0-20231218163308-9d2ee975ef9f,golang.org/x/crypto - v0.17.0,paramiko - 3.4.0 | None | |
CVE-2022-4304Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
5.9 | Not Defined | 0.3% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: OpenSSL_1_1_1t,openssl-3.0.8,openssl - 1.1.1w,openssl - 3.0.12 | None | |
CVE-2024-0727Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
5.5 | Not Defined | 0.2% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: cryptography - 42.0.2,cryptography - 42.0.2 | None | |
WS-2023-0223Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> stderrlog-0.5.4.crate (Root Library) -> ❌ atty-0.2.14.crate (Vulnerable Library) |
5.3 | Not Defined | atty-0.2.14.crate | None | |||
WS-2023-0223Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> structopt-0.3.26.crate (Root Library) -> clap-2.34.0.crate -> ❌ atty-0.2.14.crate (Vulnerable Library) |
5.3 | Not Defined | atty-0.2.14.crate | None | |||
CVE-2023-5678Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
5.3 | Not Defined | 0.6% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 3.1.5,openssl - 3.0.13 | None | |
CVE-2023-3817Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
5.3 | Not Defined | 0.3% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 3.0.12,openssl - 1.1.1w,openssl - 3.1.3 | None | |
CVE-2023-0465Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
5.3 | Not Defined | 0.4% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl - 3.1.3,openssl - 1.1.1w,openssl - 1.0.2zh,openssl - 3.0.12 | None | |
CVE-2022-4203Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> libgit2-sys-0.14.2+1.5.1.crate -> libssh2-sys-0.2.23.crate -> openssl-sys-0.9.80.crate -> ❌ openssl-src-111.24.0+1.1.1s.crate (Vulnerable Library) |
4.9 | Not Defined | 0.6% | openssl-src-111.24.0+1.1.1s.crate | Upgrade to version: openssl-3.0.8,openssl - 3.0.12 | None | |
CVE-2024-12224Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> git2-0.16.1.crate (Root Library) -> url-2.3.1.crate -> ❌ idna-0.3.0.crate (Vulnerable Library) |
4.8 | Not Defined | 0.0% | idna-0.3.0.crate | None | ||
CVE-2024-12224Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> url-2.3.1.crate (Root Library) -> ❌ idna-0.3.0.crate (Vulnerable Library) |
4.8 | Not Defined | 0.0% | idna-0.3.0.crate | None | ||
CVE-2024-12224Path to dependency file: /Cargo.toml Path to vulnerable library: /Cargo.toml Dependency Hierarchy: -> actix-web-4.3.0.crate (Root Library) -> url-2.3.1.crate -> ❌ idna-0.3.0.crate (Vulnerable Library) |
4.8 | Not Defined | 0.0% | idna-0.3.0.crate | None |
Total libraries scanned: 286
Scan token: 5a02ec70e2b740fa92b1f5c2b0d00c8b