Informational scan, not a security audit. How this is computed.
API keys, passwords or tokens committed into the repo.
Nothing found by this check. ✓
Packages you depend on that have known security holes (CVEs).
CVE-2020-35902 Use-after-free in actix-codecCVE-2020-35898 Use after free in actix-utilsCVE-2020-25573 An issue was discovered in the linked-hash-map crate before 0.5.3 for ...GHSA-9q5j-jm53-v7vr lz4-sys vulnerable to memory corruption via issue in liblz4CVE-2021-25900 An issue was discovered in the smallvec crate before 0.6.14 and 1.x be ...CVE-2026-33186 google.golang.org/grpc/grpc-go: google.golang.org/grpc/authz: gRPC-Go: Authorization bypass due to improper HTTP/2 path validationCVE-2021-25900 An issue was discovered in the smallvec crate before 0.6.14 and 1.x be ...CVE-2026-35372 A logic error in the ln utility of uutils coreutils allows the utility ...CVE-2026-35380 A logic error in the cut utility of uutils coreutils causes the progra ...CVE-2020-35901 Use-after-free in actix-httpCVE-2021-38512 rust-actix-http: potential request smuggling capabilities due to lack of input validationGHSA-xhj4-vrgc-hr34 actix-http has HTTP/1.1 CL.TE Request Smuggling CVE-2020-35899 Use after free in actix-serviceCVE-2020-35711 An issue has been discovered in the arc-swap crate before 0.4.8 (and 1 ...CVE-2020-35861 An issue was discovered in the bumpalo crate before 3.2.1 for Rust. Th ...GHSA-f85w-wvc7-crwc bumpalo has use-after-free due to a lifetime error in `Vec::into_iter()`CVE-2022-23639 crossbeam-utils provides atomics, synchronization primitives, scoped t ...CVE-2020-35906 futures_task::waker may cause a use-after-free if used on a type that isn't 'staticCVE-2020-35907 futures_task::noop_waker_ref can segfault due to dereferencing a NULL pointerCVE-2020-35905 MutexGuard::map can cause a data race in safe codeCVE-2020-36465 An issue was discovered in the generic-array crate before 0.13.3 for R ...CVE-2023-26964 An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occ ...GHSA-8r5v-vm4m-4g25 Resource exhaustion vulnerability in h2 may lead to Denial of Service (DoS)GHSA-q6cp-qfwq-4gcv h2 servers vulnerable to degradation of service with CONTINUATION FloodGHSA-f67m-9j94-qv9j Parser creates invalid uninitialized valueYour dependencies cross-checked against the OSV vulnerability database.
RUSTSEC-2019-0006 Buffer overflow and format vulnerabilities in functions exposed without unsafeRUSTSEC-2020-0049 Use-after-free in Framed due to lack of pinningRUSTSEC-2020-0045 bespoke Cell implementation allows obtaining several mutable references to the same dataRUSTSEC-2019-0036 Type confusion if __private_get_type_id__ is overriddenRUSTSEC-2021-0079 Integer overflow in `hyper`'s parsing of the `Transfer-Encoding` header leads to data lossRUSTSEC-2020-0026 linked-hash-map creates uninitialized NonNull pointerRUSTSEC-2022-0051 Memory corruption in liblz4RUSTSEC-2021-0003 Buffer overflow in SmallVec::insert_manyGO-2026-4762 Authorization bypass in gRPC-Go via missing leading slash in :path in google.golang.org/grpcRUSTSEC-2021-0079 Integer overflow in `hyper`'s parsing of the `Transfer-Encoding` header leads to data lossRUSTSEC-2021-0003 Buffer overflow in SmallVec::insert_manyGHSA-2m8x-mvfx-gwgj uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionGHSA-4wrp-79m8-9m9p uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionGHSA-6g8r-74qp-6859 uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionGHSA-957r-r8gc-vv3h uutils coreutils doesn't preserve file ownership during moves across different filesystem boundariesGHSA-9gh9-hwpr-rvqq uutils coreutils has a Time-of-Check to Time-of-Use (TOCTOU) race conditionGHSA-f2jv-wjjc-2c94 uutils coreutils has an Uncaught Exception When Encountering Valid but Non-UTF-8 PathsGHSA-hpfw-mqm3-33jh uutils coreutils has a Link Following issueGHSA-m2pg-c7m6-77pj uutils coreutils has an Improper Input Validation Issue in its cut UtilityGHSA-m976-87wm-48fm uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionGHSA-mh5c-xrmh-m794 uutils coreutils has an Untrusted Search PathGHSA-q6m9-xj2w-xmrc uutils coreutils has a Time-of-check Time-of-use (TOCTOU) Race ConditionGHSA-wq63-vh5h-pr5p uutils coreutils has a UNIX Symbolic Link (Symlink) Following issueGHSA-x2wv-9p67-mh9w uutils coreutils doesn't properly handle setuid and setgid bits when ownership preservation failsGHSA-x4mc-mqm7-gg39 uutils coreutils has a Time-of-Check to Time-of-Use (TOCTOU) race conditionCode that can be exploited: injection, hardcoded credentials and similar.
Nothing found by this check. ✓
Packages that look intentionally malicious: typosquats, sneaky install scripts.
Nothing found by this check. ✓
A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.
Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.