Packages you depend on that have known security holes (CVEs).
-
Serious CVE-2024-45491 libexpat: Integer Overflow or Wraparound
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2024-45491). Fix: Update that package to its patched version.
-
Serious CVE-2024-45492 libexpat: integer overflow
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2024-45492). Fix: Update that package to its patched version.
-
Serious CVE-2026-10536 libcurl: libcurl: Use-after-free vulnerability leading to Denial of Service
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-10536). Fix: Update that package to its patched version.
-
Serious CVE-2026-11856 curl: curl: Information disclosure via incorrect Digest authentication header reuse
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-11856). Fix: Update that package to its patched version.
-
Serious CVE-2026-8924 curl: curl: Cookie injection via malicious HTTP server using super cookies
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8924). Fix: Update that package to its patched version.
-
Serious CVE-2026-8927 curl: Information disclosure due to uncleared proxy authentication state
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8927). Fix: Update that package to its patched version.
-
Serious CVE-2024-24577 libgit2: arbitrary code execution due to heap corruption in git_index_add
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2024-24577). Fix: Update that package to its patched version.
-
Serious CVE-2026-55200 libssh2: libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-55200). Fix: Update that package to its patched version.
-
Serious CVE-2025-47917 Mbed TLS before 3.6.4 allows a use-after-free in certain situations of ...
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2025-47917). Fix: Update that package to its patched version.
-
Serious CVE-2024-5535 openssl: SSL_select_next_proto buffer overread
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2024-5535). Fix: Update that package to its patched version.
-
Serious CVE-2026-31789 openssl: OpenSSL: Heap buffer overflow on 32-bit systems from large X.509 certificate processing
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-31789). Fix: Update that package to its patched version.
-
Serious CVE-2026-34182 openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2026-34182). Fix: Update that package to its patched version.
-
Serious CVE-2023-45853 zlib: integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_6
JuliaSyntax/docs/Manifest.toml
A package you depend on has a known security hole (CVE-2023-45853). Fix: Update that package to its patched version.
-
Serious CVE-2026-10536 libcurl: libcurl: Use-after-free vulnerability leading to Denial of Service
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-10536). Fix: Update that package to its patched version.
-
Serious CVE-2026-11564 libcurl: libcurl: Certificate validation bypass due to incorrect connection reuse
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-11564). Fix: Update that package to its patched version.
-
Serious CVE-2026-11856 curl: curl: Information disclosure via incorrect Digest authentication header reuse
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-11856). Fix: Update that package to its patched version.
-
Serious CVE-2026-8924 curl: curl: Cookie injection via malicious HTTP server using super cookies
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8924). Fix: Update that package to its patched version.
-
Serious CVE-2026-8925 curl: curl: Double-free vulnerability in SASL authentication
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8925). Fix: Update that package to its patched version.
-
Serious CVE-2026-8926 curl: curl: Information disclosure via incorrect .netrc password lookup
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8926). Fix: Update that package to its patched version.
-
Serious CVE-2026-8927 curl: Information disclosure due to uncleared proxy authentication state
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-8927). Fix: Update that package to its patched version.
-
Serious CVE-2026-9079 libcurl: libcurl: Information disclosure due to failure to clear proxy authentication credentials
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-9079). Fix: Update that package to its patched version.
-
Serious CVE-2026-55200 libssh2: libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-55200). Fix: Update that package to its patched version.
-
Serious CVE-2026-31789 openssl: OpenSSL: Heap buffer overflow on 32-bit systems from large X.509 certificate processing
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-31789). Fix: Update that package to its patched version.
-
Serious CVE-2026-34182 openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
deps/jlutilities/documenter/Manifest.toml
A package you depend on has a known security hole (CVE-2026-34182). Fix: Update that package to its patched version.
-
Serious CVE-2026-55200 libssh2: libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
deps/jlutilities/revise/Manifest.toml
A package you depend on has a known security hole (CVE-2026-55200). Fix: Update that package to its patched version.