Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): lock file maintenance #121

Merged
merged 1 commit into from
Oct 30, 2024

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Oct 30, 2024

This PR contains the following updates:

Update Change
lockFileMaintenance All locks refreshed

🔧 This Pull Request updates lock files to use the latest dependency versions.


Configuration

📅 Schedule: Branch creation - "before 4am" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Copy link

Report for marlon

Version changes:

Version 1 -> 2:
  agda-grammar: 0.0.0+rev=d3dc807 → 0.0.0+rev=6516cfe
  bash-grammar: 0.0.0+rev=c8713e5 → 0.0.0+rev=597a5ed
  c-grammar: 0.0.0+rev=f4c2115 → 0.0.0+rev=79284a1
  c_sharp-grammar: 0.0.0+rev=fd7f740 → 0.0.0+rev=3a85187
  cmake-grammar: 0.0.0+rev=f2569dd → 0.0.0+rev=e409ae3
  cni-plugins: 1.5.1 → 1.6.0, +1973.7 KiB
  cpp-grammar: 0.0.0+rev=30d2fa3 → 0.0.0+rev=16bf9d2
  css-grammar: 0.0.0+rev=a68fcd1 → 0.0.0+rev=ccc4e2c
  dash: ∅ → 0.5.12, +166.7 KiB
  devicetree-grammar: 0.0.0+rev=07a647c → 0.0.0+rev=16c9cb9
  diff-grammar: 0.0.0+rev=19dd5aa → 0.0.0+rev=63439b5
  docker: 27.3.0 → 27.3.1
  docker-containerd: 27.3.0 → 27.3.1
  docker-init: 27.3.0 → 27.3.1
  docker-runc: 27.3.0 → 27.3.1
  dtd-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  editorconfig-grammar: 0.0.0+rev=efbe0b2 → 0.0.0+rev=777f774
  eds-grammar: 0.0.0+rev=0ad62cb → 0.0.0+rev=26d529e
  elixir-grammar: 0.0.0+rev=ef124b8 → 0.0.0+rev=2ac7a0f
  embedded_template-grammar: 0.0.0+rev=62b0a6e → 0.0.0+rev=7e319b0
  erlang-grammar: 0.0.0+rev=f1919a3 → 0.0.0+rev=4095e99
  fsharp-grammar: 0.0.0+rev=5202637 → 0.0.0+rev=971da5f, -8.0 KiB
  getty: ∅ → ε
  gitcommit-grammar: 0.0.0+rev=aa5c279 → 0.0.0+rev=db0e0c4, +160.6 KiB
  glimmer_javascript-grammar: 0.0.0+rev=a260911 → 0.0.0+rev=7e8ea8c, +16.0 KiB
  glimmer_typescript-grammar: 0.0.0+rev=9d018a0 → 0.0.0+rev=4006128
  go-grammar: 0.0.0+rev=ecc2086 → 0.0.0+rev=df2ce2e
  gotmpl-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  gren-grammar: ∅ → 0.0.0+rev=c06e272, +233.1 KiB
  haskell-grammar: 0.0.0+rev=558b997 → 0.0.0+rev=70ea075
  helm-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  hlsl-grammar: 0.0.0+rev=5439302 → 0.0.0+rev=b309425
  home-configuration-reference: +14.1 KiB
  html-grammar: 0.0.0+rev=14bdaf0 → 0.0.0+rev=c30792d
  index-x86_64: +804.5 KiB
  initrd-kmod-blacklist: ε → ∅
  initrd-linux: 6.6.56 → 6.6.58
  java-grammar: 0.0.0+rev=490d878 → 0.0.0+rev=b864ed9
  javascript-grammar: 0.0.0+rev=b6f0624 → 0.0.0+rev=c4ce9dc
  jsdoc-grammar: 0.0.0+rev=bc09606 → 0.0.0+rev=b223787
  json-grammar: 0.0.0+rev=8bfdb43 → 0.0.0+rev=f2503f1
  julia-grammar: 0.0.0+rev=3520b57 → 0.0.0+rev=19f6265
  just-grammar: 0.0.0+rev=6648ac1 → 0.0.0+rev=6aee3d2
  ledger-grammar: 0.0.0+rev=8a841fb → 0.0.0+rev=a2eff7f
  less: 661 → 668
  libressl: 3.9.2 → 4.0.0, -51.1 KiB
  linux: 6.6.56, 6.6.56-modules → 6.6.58, 6.6.58-modules, +19.4 KiB
  lowdown: 1.1.0 → 1.1.2
  lua-grammar: 0.0.0+rev=99fc677 → 0.0.0+rev=34e60e7
  markdown-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  markdown_inline-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  moby: 27.3.0 → 27.3.1
  nixos-configuration-reference: +33.4 KiB
  nixos-manual: +99.2 KiB
  nixos-system-marlon: 24.11.20241014.a3c0b3b → 24.11.20241025.18536bf
  php-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  php_only-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  python-grammar: 0.0.0+rev=8c65e25 → 0.0.0+rev=7f4b9c2
  python3.12-poetry: 1.8.3 → 1.8.4
  python3.12-poetry-core: 1.9.0 → 1.9.1
  python3.12-rapidfuzz: -31.9 KiB
  ql-grammar: 0.0.0+rev=c73c31c → 0.0.0+rev=1d3e2ff
  qmljs-grammar: 0.0.0+rev=cc4186f → 0.0.0+rev=6d4db24, +8.0 KiB
  regex-grammar: 0.0.0+rev=f70251e → 0.0.0+rev=58f4caf, +8.1 KiB
  ruby-grammar: 0.0.0+rev=0b47296 → 0.0.0+rev=83aec5f
  ruby3.3-msgpack: 1.5.1 → 1.7.2, -199.0 KiB
  ruby3.3-neovim: 0.9.0 → 0.10.0, +8.5 KiB
  rust-grammar: 0.0.0+rev=6b7d1fc → 0.0.0+rev=2ace7a9
  scala-grammar: 0.0.0+rev=2cfbb6e → 0.0.0+rev=a9af635, -8.0 KiB
  slang-grammar: 0.0.0+rev=dd991eb → 0.0.0+rev=3ed23c0
  source: +1242.0 KiB
  sql-grammar: 0.0.0+rev=a8b10c7 → 0.0.0+rev=f551a8f
  superhtml-grammar: 0.0.0+rev=36f37aa → 0.0.0+rev=3325bbb
  svelte-grammar: 0.0.0+rev=774a65a → 0.0.0+rev=ae5199d
  swift-grammar: 0.0.0+rev=a6ec57a → 0.0.0+rev=d351cb3
  systemverilog-grammar: 0.0.0+rev=4f897d5 → ∅, -28998.8 KiB
  t32-grammar: 0.0.0+rev=6182836 → 0.0.0+rev=0f6a5b1, -11.0 KiB
  tailscale: 1.76.0 → 1.76.1
  templ-grammar: 0.0.0+rev=e3e894e → 0.0.0+rev=4519e3e
  textproto-grammar: 0.0.0+rev=d900077 → 0.0.0+rev=568471b
  tlaplus-grammar: 0.0.0+rev=da9cf97 → 0.0.0+rev=8a8413f, -68.1 KiB
  tmuxplugin-yank-unstable: 2021-06-20 → 2023-07-19
  tsx-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  typescript-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  verilog-grammar: 0.0.0+rev=075ebfc → 0.0.0+rev=0dacb91, +11271.0 KiB
  vimdoc-grammar: 0.0.0+rev=2249c44 → 0.0.0+rev=59c5392
  vimplugin-nvim-lspconfig: 2024-10-12 → 2024-10-23
  vimplugin-nvim-treesitter: 2024-10-12 → 2024-10-23
  wgsl_bevy-grammar: 0.0.0+rev=0f06f24 → 0.0.0+rev=47c1818
  xml-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  xresources-grammar: ∅ → 0.0.0+rev=630af80, +33.6 KiB
  zfs-kernel: 2.2.6-6.6.56 → 2.2.6-6.6.58
Security vulnerability report
57 derivations with active advisories
4 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/9qzhwrc7rfbayz8v2b9nv489mn9dhbyz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/ks9npid1bh1dgrf3zy2xxi0v55fnkdqd-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/qvwyl90hnryw9a32ggddci31fdv53zmr-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/c56dc9k0w1jcsx8alk63p6a0ciwwfiks-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6

/nix/store/cx7q3xfak2fph0k8a64l6ihad8cb70gr-commonmark-0.2.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


dash-0.5.12

/nix/store/6ay0zljiggnqj9hb2zc7q2vbkppshhjb-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/hgvih04npppxv9qpvdpdgbc0vi5xb26b-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/nq7vahkl33x2argypgph1w9slkzsrhzm-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


flex-2.6.4

/nix/store/dzaa5z8aa1khbq0y7cwwbgqcv1dzdwzw-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


fuse-2.9.9

/nix/store/4p300c3ncsa7kx7yaaj045yyji7w16kq-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/k77dnd31fxygi0p7dm6hcjqdvg70s17l-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/4m92flgkijc7jk2s4dxbkk3a8rh6kg5k-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/74y9p0kqg4rjysvsr0jgz16hpkrhf8pz-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.46.1

/nix/store/v86dakq8ai7jvyjkls694k2jmx2nivmh-git-2.46.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n79ayszanfwvccm7hv6y3siyqx238bdz-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.2

/nix/store/nr997ailf3xzchn3mj7awf1xf9yd3h53-go-1.23.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


hedgehog-1.4

/nix/store/8dnfinn2ydns5lk4gih2ck6phgxqqjh4-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/kip2hcqw1i0bhrml09m0mx968swdcm3q-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


http-client-0.7.17

/nix/store/czzc2yhb4y3qnarg5c4r0nf1c7ds5r5f-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


jbig2dec-0.20

/nix/store/6krnaanfha90d46mwdzv850s51s9f9n5-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/m7yh0bd50pmw66mjhzqhs25pwgbbd3xr-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libarchive-3.7.4

/nix/store/k7kcni38k2dpl0pfp7c7bzxpl7m1k40q-libarchive-3.7.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-48957 7.8
https://nvd.nist.gov/vuln/detail/CVE-2024-48958 7.8


libmemcached-1.0.18

/nix/store/6qzkr7h4xcisyzw5v0k0v3a3bvvg16nl-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/pgh2il2aaszxz1cs3xv5fnbv4rh28y4y-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


lodepng-3.10.1

/nix/store/6xhhdfksymzafn9paqpbx6g6035fq2v3-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


network-3.1.4.0

/nix/store/qk0rk8q0v7mdbavszdk7sr0k68f5a1l0-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/rh7xshnca5mzqinq7fkp7cggriximp06-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/7mk4hf33fyv5sclj35llic6kr0ldwpfp-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


oh-my-zsh-2024-10-01

/nix/store/xaqgmgszi4bzjpcjkn5lh2hvf8l7vly5-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/58pns609pf7a9vdlr82yqzdld9q0kpba-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/qk5y3z6gkgvj3f0z70q2iq2rb0wj5cyb-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/7hwcl8hmns4k179n6gdsm89qhv5dzqj9-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/pimw3qfyxjr3ajf2krpgik06ff7w2qk4-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


procps-3.3.17-binlore

/nix/store/482hcd9kvvhyi76mx4axgslg2fq332ad-procps-3.3.17-binlore.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


procps-3.3.17-lore-override

/nix/store/9zjqp409dyzsf7a20x84cgn063d6wmhq-procps-3.3.17-lore-override.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


python-2.7.18.8

/nix/store/az0r56fhh0bi6312cvzc482dn0i3rv4x-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/mjq6f0x9pix375zrkq87pl7iyhyvyf1w-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.16

/nix/store/3kj8lncf3d4xrla85rw5w3w8iyrsxmyz-rubygems-3.5.16.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/17ayl9525cybch1kwgzy6kg28d5ww3fh-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/g8fxfiw3rq5cv7sqi63frc1v95n1l682-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/c3ablcvw26d1z4hvwx2lznrcdwdc9mvg-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/jqgbnvmd3scrsbms9h93wn0927kkxdh3-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


setuptools-44.0.0-source

/nix/store/aiqv5nnjhf4k8xcxbjpy8mk8a69fcj66-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/1avmira72yygg1wax5qbdqss2cq1ynn4-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


unzip-6.0

/nix/store/8qnlqng8lbl66x7g4j437x6asgpj44i0-unzip-6.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4217 3.3


vault-0.3.1.5

/nix/store/k0wliv89vq21wx96jj946sw1v93k015i-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/q600jyl603xl2vfvkq4v3lb738vmp9f5-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/bx6xwj0hlpy259ymrnnmrfqqal2bfz32-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/09mdfxdj3rm6631sxis0b7f3k7kdf720-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/cv5bs3w87xan4sxfcwzcyzk0qsnmhay6-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/vidlqc6w1453qiylfmnjip83s7bwqfam-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/l8wmqr5yaw6kdp1cbss13k9vn8czhrb2-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/cw8m1nrh8d1gzhm9rrl5rmm24kv9v3iw-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/2j49g8rph5dszi6w2d81z5iqd5wq2h4g-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/2yxasr89809ia0883mpvr0mcrl5dc755-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/0za4mw58jc2m1lrlf9l6w3im6gib92kq-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/8nccy426s4cy3q74n1z7q79gwhsa3r8r-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for roland

Version changes:

Version 1 -> 2:
  agda-grammar: 0.0.0+rev=d3dc807 → 0.0.0+rev=6516cfe
  bash-grammar: 0.0.0+rev=c8713e5 → 0.0.0+rev=597a5ed
  c-grammar: 0.0.0+rev=f4c2115 → 0.0.0+rev=79284a1
  c_sharp-grammar: 0.0.0+rev=fd7f740 → 0.0.0+rev=3a85187
  cmake-grammar: 0.0.0+rev=f2569dd → 0.0.0+rev=e409ae3
  cpp-grammar: 0.0.0+rev=30d2fa3 → 0.0.0+rev=16bf9d2
  css-grammar: 0.0.0+rev=a68fcd1 → 0.0.0+rev=ccc4e2c
  dash: ∅ → 0.5.12, +166.7 KiB
  devicetree-grammar: 0.0.0+rev=07a647c → 0.0.0+rev=16c9cb9
  diff-grammar: 0.0.0+rev=19dd5aa → 0.0.0+rev=63439b5
  dtd-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  editorconfig-grammar: 0.0.0+rev=efbe0b2 → 0.0.0+rev=777f774
  eds-grammar: 0.0.0+rev=0ad62cb → 0.0.0+rev=26d529e
  elixir-grammar: 0.0.0+rev=ef124b8 → 0.0.0+rev=2ac7a0f
  embedded_template-grammar: 0.0.0+rev=62b0a6e → 0.0.0+rev=7e319b0
  erlang-grammar: 0.0.0+rev=f1919a3 → 0.0.0+rev=4095e99
  fsharp-grammar: 0.0.0+rev=5202637 → 0.0.0+rev=971da5f, -8.0 KiB
  getty: ∅ → ε
  gitcommit-grammar: 0.0.0+rev=aa5c279 → 0.0.0+rev=db0e0c4, +160.6 KiB
  glimmer_javascript-grammar: 0.0.0+rev=a260911 → 0.0.0+rev=7e8ea8c, +16.0 KiB
  glimmer_typescript-grammar: 0.0.0+rev=9d018a0 → 0.0.0+rev=4006128
  go-grammar: 0.0.0+rev=ecc2086 → 0.0.0+rev=df2ce2e
  gotmpl-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  gren-grammar: ∅ → 0.0.0+rev=c06e272, +233.1 KiB
  haskell-grammar: 0.0.0+rev=558b997 → 0.0.0+rev=70ea075
  helm-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  hlsl-grammar: 0.0.0+rev=5439302 → 0.0.0+rev=b309425
  home-configuration-reference: +14.1 KiB
  html-grammar: 0.0.0+rev=14bdaf0 → 0.0.0+rev=c30792d
  index-x86_64: +804.5 KiB
  initrd: ε → ∅
  initrd-linux: 6.6.56 → 6.6.58
  java-grammar: 0.0.0+rev=490d878 → 0.0.0+rev=b864ed9
  javascript-grammar: 0.0.0+rev=b6f0624 → 0.0.0+rev=c4ce9dc
  jsdoc-grammar: 0.0.0+rev=bc09606 → 0.0.0+rev=b223787
  json-grammar: 0.0.0+rev=8bfdb43 → 0.0.0+rev=f2503f1
  julia-grammar: 0.0.0+rev=3520b57 → 0.0.0+rev=19f6265
  just-grammar: 0.0.0+rev=6648ac1 → 0.0.0+rev=6aee3d2
  ledger-grammar: 0.0.0+rev=8a841fb → 0.0.0+rev=a2eff7f
  less: 661 → 668
  libressl: 3.9.2 → 4.0.0, -51.1 KiB
  linux: 6.6.56, 6.6.56-modules → 6.6.58, 6.6.58-modules, +19.3 KiB
  linux-firmware: 20240909 → 20241017, +20322.5 KiB
  lowdown: 1.1.0 → 1.1.2
  lua-grammar: 0.0.0+rev=99fc677 → 0.0.0+rev=34e60e7
  markdown-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  markdown_inline-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  nixos-configuration-reference: +33.4 KiB
  nixos-manual: +99.2 KiB
  nixos-system-roland: 24.11.20241014.a3c0b3b → 24.11.20241025.18536bf
  php-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  php_only-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  python-grammar: 0.0.0+rev=8c65e25 → 0.0.0+rev=7f4b9c2
  python3.12-poetry: 1.8.3 → 1.8.4
  python3.12-poetry-core: 1.9.0 → 1.9.1
  python3.12-rapidfuzz: -31.9 KiB
  ql-grammar: 0.0.0+rev=c73c31c → 0.0.0+rev=1d3e2ff
  qmljs-grammar: 0.0.0+rev=cc4186f → 0.0.0+rev=6d4db24, +8.0 KiB
  regex-grammar: 0.0.0+rev=f70251e → 0.0.0+rev=58f4caf, +8.1 KiB
  ruby-grammar: 0.0.0+rev=0b47296 → 0.0.0+rev=83aec5f
  ruby3.3-msgpack: 1.5.1 → 1.7.2, -199.0 KiB
  ruby3.3-neovim: 0.9.0 → 0.10.0, +8.5 KiB
  rust-grammar: 0.0.0+rev=6b7d1fc → 0.0.0+rev=2ace7a9
  scala-grammar: 0.0.0+rev=2cfbb6e → 0.0.0+rev=a9af635, -8.0 KiB
  slang-grammar: 0.0.0+rev=dd991eb → 0.0.0+rev=3ed23c0
  sof-firmware: +25.6 KiB
  source: +1242.0 KiB
  sql-grammar: 0.0.0+rev=a8b10c7 → 0.0.0+rev=f551a8f
  superhtml-grammar: 0.0.0+rev=36f37aa → 0.0.0+rev=3325bbb
  svelte-grammar: 0.0.0+rev=774a65a → 0.0.0+rev=ae5199d
  swift-grammar: 0.0.0+rev=a6ec57a → 0.0.0+rev=d351cb3
  systemverilog-grammar: 0.0.0+rev=4f897d5 → ∅, -28998.8 KiB
  t32-grammar: 0.0.0+rev=6182836 → 0.0.0+rev=0f6a5b1, -11.0 KiB
  tailscale: 1.76.0 → 1.76.1
  templ-grammar: 0.0.0+rev=e3e894e → 0.0.0+rev=4519e3e
  textproto-grammar: 0.0.0+rev=d900077 → 0.0.0+rev=568471b
  tlaplus-grammar: 0.0.0+rev=da9cf97 → 0.0.0+rev=8a8413f, -68.1 KiB
  tmuxplugin-yank-unstable: 2021-06-20 → 2023-07-19
  tsx-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  typescript-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  verilog-grammar: 0.0.0+rev=075ebfc → 0.0.0+rev=0dacb91, +11271.0 KiB
  vimdoc-grammar: 0.0.0+rev=2249c44 → 0.0.0+rev=59c5392
  vimplugin-nvim-lspconfig: 2024-10-12 → 2024-10-23
  vimplugin-nvim-treesitter: 2024-10-12 → 2024-10-23
  wgsl_bevy-grammar: 0.0.0+rev=0f06f24 → 0.0.0+rev=47c1818
  xml-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  xresources-grammar: ∅ → 0.0.0+rev=630af80, +33.6 KiB
  zfs-kernel: 2.2.6-6.6.56 → 2.2.6-6.6.58
Security vulnerability report
57 derivations with active advisories
4 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/9qzhwrc7rfbayz8v2b9nv489mn9dhbyz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/ks9npid1bh1dgrf3zy2xxi0v55fnkdqd-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/qvwyl90hnryw9a32ggddci31fdv53zmr-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/c56dc9k0w1jcsx8alk63p6a0ciwwfiks-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6

/nix/store/cx7q3xfak2fph0k8a64l6ihad8cb70gr-commonmark-0.2.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


dash-0.5.12

/nix/store/6ay0zljiggnqj9hb2zc7q2vbkppshhjb-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/hgvih04npppxv9qpvdpdgbc0vi5xb26b-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/c8rc7mm62pf5xq5xgqzmji7cw844c978-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


flex-2.6.4

/nix/store/dzaa5z8aa1khbq0y7cwwbgqcv1dzdwzw-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


fuse-2.9.9

/nix/store/4p300c3ncsa7kx7yaaj045yyji7w16kq-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/k77dnd31fxygi0p7dm6hcjqdvg70s17l-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/4m92flgkijc7jk2s4dxbkk3a8rh6kg5k-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/74y9p0kqg4rjysvsr0jgz16hpkrhf8pz-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.46.1

/nix/store/v86dakq8ai7jvyjkls694k2jmx2nivmh-git-2.46.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n79ayszanfwvccm7hv6y3siyqx238bdz-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.2

/nix/store/nr997ailf3xzchn3mj7awf1xf9yd3h53-go-1.23.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


hedgehog-1.4

/nix/store/8dnfinn2ydns5lk4gih2ck6phgxqqjh4-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/kip2hcqw1i0bhrml09m0mx968swdcm3q-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


http-client-0.7.17

/nix/store/czzc2yhb4y3qnarg5c4r0nf1c7ds5r5f-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


jbig2dec-0.20

/nix/store/6krnaanfha90d46mwdzv850s51s9f9n5-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/m7yh0bd50pmw66mjhzqhs25pwgbbd3xr-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libarchive-3.7.4

/nix/store/k7kcni38k2dpl0pfp7c7bzxpl7m1k40q-libarchive-3.7.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-48957 7.8
https://nvd.nist.gov/vuln/detail/CVE-2024-48958 7.8


libmemcached-1.0.18

/nix/store/6qzkr7h4xcisyzw5v0k0v3a3bvvg16nl-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/pgh2il2aaszxz1cs3xv5fnbv4rh28y4y-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


lodepng-3.10.1

/nix/store/6xhhdfksymzafn9paqpbx6g6035fq2v3-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


network-3.1.4.0

/nix/store/qk0rk8q0v7mdbavszdk7sr0k68f5a1l0-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/rh7xshnca5mzqinq7fkp7cggriximp06-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/7mk4hf33fyv5sclj35llic6kr0ldwpfp-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


oh-my-zsh-2024-10-01

/nix/store/xaqgmgszi4bzjpcjkn5lh2hvf8l7vly5-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/58pns609pf7a9vdlr82yqzdld9q0kpba-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/qk5y3z6gkgvj3f0z70q2iq2rb0wj5cyb-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/7hwcl8hmns4k179n6gdsm89qhv5dzqj9-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/pimw3qfyxjr3ajf2krpgik06ff7w2qk4-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


procps-3.3.17-binlore

/nix/store/482hcd9kvvhyi76mx4axgslg2fq332ad-procps-3.3.17-binlore.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


procps-3.3.17-lore-override

/nix/store/9zjqp409dyzsf7a20x84cgn063d6wmhq-procps-3.3.17-lore-override.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


python-2.7.18.8

/nix/store/az0r56fhh0bi6312cvzc482dn0i3rv4x-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/mjq6f0x9pix375zrkq87pl7iyhyvyf1w-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.16

/nix/store/3kj8lncf3d4xrla85rw5w3w8iyrsxmyz-rubygems-3.5.16.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/17ayl9525cybch1kwgzy6kg28d5ww3fh-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/g8fxfiw3rq5cv7sqi63frc1v95n1l682-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/c3ablcvw26d1z4hvwx2lznrcdwdc9mvg-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/jqgbnvmd3scrsbms9h93wn0927kkxdh3-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


setuptools-44.0.0-source

/nix/store/aiqv5nnjhf4k8xcxbjpy8mk8a69fcj66-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/1avmira72yygg1wax5qbdqss2cq1ynn4-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


unzip-6.0

/nix/store/8qnlqng8lbl66x7g4j437x6asgpj44i0-unzip-6.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4217 3.3


vault-0.3.1.5

/nix/store/k0wliv89vq21wx96jj946sw1v93k015i-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/q600jyl603xl2vfvkq4v3lb738vmp9f5-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/bx6xwj0hlpy259ymrnnmrfqqal2bfz32-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/09mdfxdj3rm6631sxis0b7f3k7kdf720-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/cv5bs3w87xan4sxfcwzcyzk0qsnmhay6-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/vidlqc6w1453qiylfmnjip83s7bwqfam-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/l8wmqr5yaw6kdp1cbss13k9vn8czhrb2-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/cw8m1nrh8d1gzhm9rrl5rmm24kv9v3iw-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/2j49g8rph5dszi6w2d81z5iqd5wq2h4g-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/2yxasr89809ia0883mpvr0mcrl5dc755-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/0za4mw58jc2m1lrlf9l6w3im6gib92kq-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/8nccy426s4cy3q74n1z7q79gwhsa3r8r-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for elmira

Version changes:

Version 1 -> 2:'
'  agda-grammar: 0.0.0+rev=d3dc807 → 0.0.0+rev=6516cfe, -41.1 KiB'
'  alacritty: 0.13.2 → 0.14.0, +216.5 KiB'
'  bash-grammar: 0.0.0+rev=c8713e5 → 0.0.0+rev=597a5ed'
'  c-grammar: 0.0.0+rev=f4c2115 → 0.0.0+rev=79284a1'
'  c_sharp-grammar: 0.0.0+rev=fd7f740 → 0.0.0+rev=3a85187'
'  cmake-grammar: 0.0.0+rev=f2569dd → 0.0.0+rev=e409ae3'
'  cpp-grammar: 0.0.0+rev=30d2fa3 → 0.0.0+rev=16bf9d2'
'  css-grammar: 0.0.0+rev=a68fcd1 → 0.0.0+rev=ccc4e2c'
'  darwin: +17.5 KiB'
'  darwin-manual: +44.3 KiB'
'  darwin-system: 24.11.20241014.a3c0b3b+darwin4.a60ac02 → 24.11.20241025.18536bf+darwin4.b379bd4'
'  devicetree-grammar: 0.0.0+rev=07a647c → 0.0.0+rev=16c9cb9'
'  diff-grammar: 0.0.0+rev=19dd5aa → 0.0.0+rev=63439b5'
'  dtd-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e'
'  editorconfig-grammar: 0.0.0+rev=efbe0b2 → 0.0.0+rev=777f774'
'  eds-grammar: 0.0.0+rev=0ad62cb → 0.0.0+rev=26d529e'
'  elixir-grammar: 0.0.0+rev=ef124b8 → 0.0.0+rev=2ac7a0f'
'  embedded_template-grammar: 0.0.0+rev=62b0a6e → 0.0.0+rev=7e319b0'
'  erlang-grammar: 0.0.0+rev=f1919a3 → 0.0.0+rev=4095e99'
'  fsharp-grammar: 0.0.0+rev=5202637 → 0.0.0+rev=971da5f'
'  gitcommit-grammar: 0.0.0+rev=aa5c279 → 0.0.0+rev=db0e0c4, +226.4 KiB'
'  glimmer_javascript-grammar: 0.0.0+rev=a260911 → 0.0.0+rev=7e8ea8c, +16.1 KiB'
'  glimmer_typescript-grammar: 0.0.0+rev=9d018a0 → 0.0.0+rev=4006128'
'  go-grammar: 0.0.0+rev=ecc2086 → 0.0.0+rev=df2ce2e'
'  gotmpl-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf'
'  gren-grammar: ∅ → 0.0.0+rev=c06e272, +232.2 KiB'
'  haskell-grammar: 0.0.0+rev=558b997 → 0.0.0+rev=70ea075'
'  helm-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf'
'  hlsl-grammar: 0.0.0+rev=5439302 → 0.0.0+rev=b309425'
'  home-configuration-reference: +14.1 KiB'
'  html-grammar: 0.0.0+rev=14bdaf0 → 0.0.0+rev=c30792d'
'  index-aarch64: -56.8 KiB'
'  java-grammar: 0.0.0+rev=490d878 → 0.0.0+rev=b864ed9'
'  javascript-grammar: 0.0.0+rev=b6f0624 → 0.0.0+rev=c4ce9dc'
'  jsdoc-grammar: 0.0.0+rev=bc09606 → 0.0.0+rev=b223787'
'  json-grammar: 0.0.0+rev=8bfdb43 → 0.0.0+rev=f2503f1'
'  julia-grammar: 0.0.0+rev=3520b57 → 0.0.0+rev=19f6265'
'  just-grammar: 0.0.0+rev=6648ac1 → 0.0.0+rev=6aee3d2'
'  ledger-grammar: 0.0.0+rev=8a841fb → 0.0.0+rev=a2eff7f'
'  less: 661 → 668'
'  lowdown: 1.1.0 → 1.1.2'
'  lua-grammar: 0.0.0+rev=99fc677 → 0.0.0+rev=34e60e7'
'  markdown-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549'
'  markdown_inline-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549'
'  php-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6'
'  php_only-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6'
'  python-grammar: 0.0.0+rev=8c65e25 → 0.0.0+rev=7f4b9c2'
'  python3.12-poetry: 1.8.3 → 1.8.4'
'  python3.12-poetry-core: 1.9.0 → 1.9.1'
'  python3.12-rapidfuzz: -32.4 KiB'
'  ql-grammar: 0.0.0+rev=c73c31c → 0.0.0+rev=1d3e2ff'
'  qmljs-grammar: 0.0.0+rev=cc4186f → 0.0.0+rev=6d4db24'
'  regex-grammar: 0.0.0+rev=f70251e → 0.0.0+rev=58f4caf, +16.2 KiB'
'  ruby-grammar: 0.0.0+rev=0b47296 → 0.0.0+rev=83aec5f'
'  ruby3.3-msgpack: 1.5.1 → 1.7.2, -167.5 KiB'
'  ruby3.3-neovim: 0.9.0 → 0.10.0, +8.5 KiB'
'  rust-grammar: 0.0.0+rev=6b7d1fc → 0.0.0+rev=2ace7a9'
'  scala-grammar: 0.0.0+rev=2cfbb6e → 0.0.0+rev=a9af635'
'  slang-grammar: 0.0.0+rev=dd991eb → 0.0.0+rev=3ed23c0'
'  source: +1242.0 KiB'
'  sql-grammar: 0.0.0+rev=a8b10c7 → 0.0.0+rev=f551a8f'
'  superhtml-grammar: 0.0.0+rev=36f37aa → 0.0.0+rev=3325bbb'
'  svelte-grammar: 0.0.0+rev=774a65a → 0.0.0+rev=ae5199d'
'  swift-grammar: 0.0.0+rev=a6ec57a → 0.0.0+rev=d351cb3'
'  systemverilog-grammar: 0.0.0+rev=4f897d5 → ∅, -29270.9 KiB'
'  t32-grammar: 0.0.0+rev=6182836 → 0.0.0+rev=0f6a5b1'
'  tailscale: 1.76.0 → 1.76.1'
'  taskflow: 3.7.0 → 3.8.0, -25.6 KiB'
'  templ-grammar: 0.0.0+rev=e3e894e → 0.0.0+rev=4519e3e'
'  textproto-grammar: 0.0.0+rev=d900077 → 0.0.0+rev=568471b'
'  tlaplus-grammar: 0.0.0+rev=da9cf97 → 0.0.0+rev=8a8413f, -64.6 KiB'
'  tmuxplugin-yank-unstable: 2021-06-20 → 2023-07-19'
'  tsx-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447'
'  typescript-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447'
'  verilog-grammar: 0.0.0+rev=075ebfc → 0.0.0+rev=0dacb91, +11354.9 KiB'
'  vimdoc-grammar: 0.0.0+rev=2249c44 → 0.0.0+rev=59c5392'
'  vimplugin-nvim-lspconfig: 2024-10-12 → 2024-10-23'
'  vimplugin-nvim-treesitter: 2024-10-12 → 2024-10-23'
'  wgsl_bevy-grammar: 0.0.0+rev=0f06f24 → 0.0.0+rev=47c1818'
'  xml-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e'
'  xresources-grammar: ∅ → 0.0.0+rev=630af80, +51.3 KiB
Security vulnerability report
39 derivations with active advisories'
'3 derivations left out due to whitelisting'
''
'------------------------------------------------------------------------'
'cereal-0.5.8.3'
''
'/nix/store/wnmwx30w8jw6hs3bdvdhsdlz6msnhd56-cereal-0.5.8.3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11105    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11104    5.3'
''
'------------------------------------------------------------------------'
'commonmark-0.2.6'
''
'/nix/store/fy6imfigxn44v6v98s5f32q3kw64x91v-commonmark-0.2.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-10010    6.1'
''
'------------------------------------------------------------------------'
'flex-2.6.4'
''
'/nix/store/s42nzhi42hh00aqzvg8kibsbgjvwvcn8-flex-2.6.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-6293     5.5'
''
'------------------------------------------------------------------------'
'gcc-13.3.0'
''
'/nix/store/xsvw3q5li4xbamw9ac7012gbk65x3xdq-gcc-13.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-4039     4.8'
''
'------------------------------------------------------------------------'
'git-2.46.1'
''
'/nix/store/krqq2gzqfnd2vldl2ima0crsmmng28qp-git-2.46.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36882    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-30947    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36883    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38663    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-21684    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-2136     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36884    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-1003010  4.3'
''
'------------------------------------------------------------------------'
'go-1.21.0-darwin-arm64-bootstrap'
''
'/nix/store/jk1i2sn038mbnf5znisrsvqi2nqpwlxi-go-1.21.0-darwin-arm64-bootstrap.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39320    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24790    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39323    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39321    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39322    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39325    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-44487    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39318    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39319    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24789    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'go-1.23.2'
''
'/nix/store/bcc5mmdyknixsyjls6ssa39jpvxfdh7y-go-1.23.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4'
''
'/nix/store/6r4jwjjffq14dwxkrcgbvfakwgwmqnv7-hedgehog-1.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4-r8.cabal'
''
'/nix/store/jal81avkjn5s5hp7k9kshlp12s7fj0ri-hedgehog-1.4-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'http-client-0.7.17'
''
'/nix/store/hwlyjxwdl8hi9dychrv75pcpd0mv83lk-http-client-0.7.17.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11021    7.5'
''
'------------------------------------------------------------------------'
'indent-2.2.13'
''
'/nix/store/p0hbi86a9w96ks9mk0dy74wf4waymaih-indent-2.2.13.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-0911     5.5'
''
'------------------------------------------------------------------------'
'jbig2dec-0.20'
''
'/nix/store/ncbqhwp0mfm4d8211aqk83q0x172xvyq-jbig2dec-0.20.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-46361    6.5'
''
'------------------------------------------------------------------------'
'lapack-3'
''
'/nix/store/29c4vf8l2kq8zqx8jypzpq826f4s0bvn-lapack-3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4048     9.1'
''
'------------------------------------------------------------------------'
'libarchive-3.7.4'
''
'/nix/store/hbxv3cgwp619n1qg6i1g0kj6rnjk6b61-libarchive-3.7.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-48957    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2024-48958    7.8'
''
'------------------------------------------------------------------------'
'libmemcached-1.0.18'
''
'/nix/store/090hi3s8z6366i4kh5q9fcj717rwzhb2-libmemcached-1.0.18.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-27478    6.5'
''
'------------------------------------------------------------------------'
'lodepng-3.10.1'
''
'/nix/store/1snakiqsz05j6sc7bw040yaf3wiw7yp5-lodepng-3.10.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-17178    7.5'
''
'------------------------------------------------------------------------'
'lua-5.2.4'
''
'/nix/store/ak8hsg0c0dmi335lxzcgrsaxfr1w21wp-lua-5.2.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-43519    5.5'
''
'------------------------------------------------------------------------'
'network-3.1.4.0'
''
'/nix/store/psscfs9l49mxh8hnagyqwn9p6kx1pnyh-network-3.1.4.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'network-3.1.4.0-r1.cabal'
''
'/nix/store/i5vaz9zvsi1fpwda1rsgqcy0mpfj4h3d-network-3.1.4.0-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'ninja-1.12.1'
''
'/nix/store/pi8kpgbaibrgcvp1hc325wvd393i184a-ninja-1.12.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4336     9.8'
''
'------------------------------------------------------------------------'
'oh-my-zsh-2024-10-01'
''
'/nix/store/b8q0j5b8z7jlaniscdi67lsrlg8xm1pd-oh-my-zsh-2024-10-01.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3727     9.8'
''
'------------------------------------------------------------------------'
'openmp-16.0.6'
''
'/nix/store/7x8kkyrnjnkn0rblqivjri8q0pb761gj-openmp-16.0.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-26345    7.3'
''
'------------------------------------------------------------------------'
'patch-2.7.6'
''
'/nix/store/qsdf0qalxxw0sr87llq9cp9dfwia3p5d-patch-2.7.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-20633    5.5'
''
'------------------------------------------------------------------------'
'quote-1.0.36'
''
'/nix/store/xa4dif2wk5fyflidnjmkji5aiq8djm1g-quote-1.0.36.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-16194    5.3'
''
'------------------------------------------------------------------------'
'rubygems-3.5.16'
''
'/nix/store/qsx3l87jpmfkqxkm8b313rpykcs19r38-rubygems-3.5.16.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36073    8.8'
''
'------------------------------------------------------------------------'
'safe-0.3.21'
''
'/nix/store/r5yb8kjdalzqzaxb9166kdrx247yikwa-safe-0.3.21.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2019-11644    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'safe-0.3.21-r1.cabal'
''
'/nix/store/chza1zfdc7zzi6a3j6nbbzgrh43qdhai-safe-0.3.21-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2019-11644    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'stringbuilder-0.5.1'
''
'/nix/store/2zih1y3yp1i52f9hshcvwzchlzczfwza-stringbuilder-0.5.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-21524    9.1'
''
'------------------------------------------------------------------------'
'subversion-1.14.4'
''
'/nix/store/jldh5ya401fi1cynzq8rhfh9vhgj1cxc-subversion-1.14.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-21698    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2020-2304     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2020-2111     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2022-29046    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2022-29048    4.3'
''
'------------------------------------------------------------------------'
'unzip-6.0'
''
'/nix/store/x8frss4r69s9bgk21rxqihk36vy93fic-unzip-6.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4217     3.3'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5'
''
'/nix/store/9xq04279i1x6smnssb4w7rwv854h0hh7-vault-0.3.1.5.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5-r8.cabal'
''
'/nix/store/fh7ylibwwhvhx92n4i9fq29pz6340ky2-vault-0.3.1.5-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'warp-3.3.31'
''
'/nix/store/64aw5qm2xldql812n1bas2ldj202cwjf-warp-3.3.31.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3320     9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3512     8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4428     8.0'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2145     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2225     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0652     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1412     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1862     7.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2754     6.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4457     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0238     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0654     3.7'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2'
''
'/nix/store/l55cd1askkpvy3zyyfbj3d403hcw0137-yaml-0.11.11.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2-r2.cabal'
''
'/nix/store/qf51svplw84zaz33q4fjn9py23g314hc-yaml-0.11.11.2-r2.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yasm-1.3.0'
''
'/nix/store/f4sadnv174q1wzwhqz3yrrjipj82qhp1-yasm-1.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33454    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33455    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33456    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33457    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33458    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33459    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33460    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33461    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33462    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33463    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33464    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33465    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33466    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33467    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33468    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-30402    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31972    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31973    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31974    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-51258    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31975    3.3'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0'
''
'/nix/store/56rj49p3vggljhzzpy1rs73m8zsyxigq-zlib-0.6.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0-r5.cabal'
''
'/nix/store/i18jyvmjj93fz8vjv4fk45lbcmql4cr6-zlib-0.6.3.0-r5.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-1.3.1'
''
'/nix/store/4hy5d0s5kcm98bvib5fwahbqy5nyrpm0-zlib-1.3.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for vic

Version changes:

Version 1 -> 2:
  agda-grammar: 0.0.0+rev=d3dc807 → 0.0.0+rev=6516cfe
  alacritty: 0.13.2 → 0.14.0, +365.9 KiB
  bash-grammar: 0.0.0+rev=c8713e5 → 0.0.0+rev=597a5ed
  c-grammar: 0.0.0+rev=f4c2115 → 0.0.0+rev=79284a1
  c_sharp-grammar: 0.0.0+rev=fd7f740 → 0.0.0+rev=3a85187
  cmake-grammar: 0.0.0+rev=f2569dd → 0.0.0+rev=e409ae3
  cpp-grammar: 0.0.0+rev=30d2fa3 → 0.0.0+rev=16bf9d2
  css-grammar: 0.0.0+rev=a68fcd1 → 0.0.0+rev=ccc4e2c
  dash: ∅ → 0.5.12, +166.7 KiB
  devicetree-grammar: 0.0.0+rev=07a647c → 0.0.0+rev=16c9cb9
  diff-grammar: 0.0.0+rev=19dd5aa → 0.0.0+rev=63439b5
  dtd-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  editorconfig-grammar: 0.0.0+rev=efbe0b2 → 0.0.0+rev=777f774
  eds-grammar: 0.0.0+rev=0ad62cb → 0.0.0+rev=26d529e
  elixir-grammar: 0.0.0+rev=ef124b8 → 0.0.0+rev=2ac7a0f
  embedded_template-grammar: 0.0.0+rev=62b0a6e → 0.0.0+rev=7e319b0
  erlang-grammar: 0.0.0+rev=f1919a3 → 0.0.0+rev=4095e99
  firefox: 131.0.2 → 131.0.3, -117.9 KiB
  firefox-unwrapped: 131.0.2 → 131.0.3, -135.3 KiB
  fsharp-grammar: 0.0.0+rev=5202637 → 0.0.0+rev=971da5f, -8.0 KiB
  getty: ∅ → ε
  gitcommit-grammar: 0.0.0+rev=aa5c279 → 0.0.0+rev=db0e0c4, +160.6 KiB
  glimmer_javascript-grammar: 0.0.0+rev=a260911 → 0.0.0+rev=7e8ea8c, +16.0 KiB
  glimmer_typescript-grammar: 0.0.0+rev=9d018a0 → 0.0.0+rev=4006128
  go-grammar: 0.0.0+rev=ecc2086 → 0.0.0+rev=df2ce2e
  gotmpl-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  gren-grammar: ∅ → 0.0.0+rev=c06e272, +233.1 KiB
  haskell-grammar: 0.0.0+rev=558b997 → 0.0.0+rev=70ea075
  helm-grammar: 0.0.0+rev=fd9e1c6 → 0.0.0+rev=ca52fbf
  hlsl-grammar: 0.0.0+rev=5439302 → 0.0.0+rev=b309425
  home-configuration-reference: +14.1 KiB
  html-grammar: 0.0.0+rev=14bdaf0 → 0.0.0+rev=c30792d
  ibus: +346.2 KiB
  index-x86_64: +804.5 KiB
  initrd-kmod-blacklist: ε → ∅
  initrd-linux: 6.6.56 → 6.6.58
  java-grammar: 0.0.0+rev=490d878 → 0.0.0+rev=b864ed9
  javascript-grammar: 0.0.0+rev=b6f0624 → 0.0.0+rev=c4ce9dc
  jsdoc-grammar: 0.0.0+rev=bc09606 → 0.0.0+rev=b223787
  json-grammar: 0.0.0+rev=8bfdb43 → 0.0.0+rev=f2503f1
  julia-grammar: 0.0.0+rev=3520b57 → 0.0.0+rev=19f6265
  just-grammar: 0.0.0+rev=6648ac1 → 0.0.0+rev=6aee3d2
  ledger-grammar: 0.0.0+rev=8a841fb → 0.0.0+rev=a2eff7f
  less: 661 → 668
  libjcat: 0.2.1 → 0.2.2
  libportal: 0.7.1 → 0.8.1, +33.3 KiB
  libressl: 3.9.2 → 4.0.0, -51.1 KiB
  libzip: 1.10.1 → 1.11.1
  linux: 6.6.56, 6.6.56-modules → 6.6.58, 6.6.58-modules, +17.0 KiB
  linux-firmware: 20240909 → 20241017, +20322.5 KiB
  lowdown: 1.1.0 → 1.1.2
  lua-grammar: 0.0.0+rev=99fc677 → 0.0.0+rev=34e60e7
  markdown-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  markdown_inline-grammar: 0.0.0+rev=b7eba93 → 0.0.0+rev=5cdc549
  nixos-configuration-reference: +33.4 KiB
  nixos-manual: +99.2 KiB
  nixos-system-vic: 24.11.20241014.a3c0b3b → 24.11.20241025.18536bf
  php-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  php_only-grammar: 0.0.0+rev=07a0459 → 0.0.0+rev=2bce5a6
  python-grammar: 0.0.0+rev=8c65e25 → 0.0.0+rev=7f4b9c2
  python3.12-poetry: 1.8.3 → 1.8.4
  python3.12-poetry-core: 1.9.0 → 1.9.1
  python3.12-rapidfuzz: -31.9 KiB
  ql-grammar: 0.0.0+rev=c73c31c → 0.0.0+rev=1d3e2ff
  qmljs-grammar: 0.0.0+rev=cc4186f → 0.0.0+rev=6d4db24, +8.0 KiB
  regex-grammar: 0.0.0+rev=f70251e → 0.0.0+rev=58f4caf, +8.1 KiB
  ruby-grammar: 0.0.0+rev=0b47296 → 0.0.0+rev=83aec5f
  ruby3.3-msgpack: 1.5.1 → 1.7.2, -199.0 KiB
  ruby3.3-neovim: 0.9.0 → 0.10.0, +8.5 KiB
  rust-grammar: 0.0.0+rev=6b7d1fc → 0.0.0+rev=2ace7a9
  scala-grammar: 0.0.0+rev=2cfbb6e → 0.0.0+rev=a9af635, -8.0 KiB
  slang-grammar: 0.0.0+rev=dd991eb → 0.0.0+rev=3ed23c0
  sof-firmware: +25.6 KiB
  source: +1242.0 KiB
  sql-grammar: 0.0.0+rev=a8b10c7 → 0.0.0+rev=f551a8f
  superhtml-grammar: 0.0.0+rev=36f37aa → 0.0.0+rev=3325bbb
  svelte-grammar: 0.0.0+rev=774a65a → 0.0.0+rev=ae5199d
  swift-grammar: 0.0.0+rev=a6ec57a → 0.0.0+rev=d351cb3
  systemverilog-grammar: 0.0.0+rev=4f897d5 → ∅, -28998.8 KiB
  t32-grammar: 0.0.0+rev=6182836 → 0.0.0+rev=0f6a5b1, -11.0 KiB
  tailscale: 1.76.0 → 1.76.1
  templ-grammar: 0.0.0+rev=e3e894e → 0.0.0+rev=4519e3e
  textproto-grammar: 0.0.0+rev=d900077 → 0.0.0+rev=568471b
  tlaplus-grammar: 0.0.0+rev=da9cf97 → 0.0.0+rev=8a8413f, -68.1 KiB
  tmuxplugin-yank-unstable: 2021-06-20 → 2023-07-19
  tsx-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  typescript-grammar: 0.0.0+rev=9951831 → 0.0.0+rev=73c4447
  verilog-grammar: 0.0.0+rev=075ebfc → 0.0.0+rev=0dacb91, +11271.0 KiB
  vimdoc-grammar: 0.0.0+rev=2249c44 → 0.0.0+rev=59c5392
  vimplugin-nvim-lspconfig: 2024-10-12 → 2024-10-23
  vimplugin-nvim-treesitter: 2024-10-12 → 2024-10-23
  wgsl_bevy-grammar: 0.0.0+rev=0f06f24 → 0.0.0+rev=47c1818
  xml-grammar: 0.0.0+rev=809266e → 0.0.0+rev=cd1316e
  xresources-grammar: ∅ → 0.0.0+rev=630af80, +33.6 KiB
Security vulnerability report
69 derivations with active advisories
4 derivations left out due to whitelisting

accountsservice-23.13.9

/nix/store/rd29bq526w33zsl54fdggnmsc55kd7vf-accountsservice-23.13.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3297 7.8


audiofile-0.3.6

/nix/store/9qzhwrc7rfbayz8v2b9nv489mn9dhbyz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/ks9npid1bh1dgrf3zy2xxi0v55fnkdqd-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/qvwyl90hnryw9a32ggddci31fdv53zmr-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/c56dc9k0w1jcsx8alk63p6a0ciwwfiks-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6

/nix/store/cx7q3xfak2fph0k8a64l6ihad8cb70gr-commonmark-0.2.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


console-0.15.8

/nix/store/7y8rad6wmykj2d3j9hhsf1ac41yz687v-console-0.15.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-33955 5.3


dash-0.5.12

/nix/store/6ay0zljiggnqj9hb2zc7q2vbkppshhjb-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/hgvih04npppxv9qpvdpdgbc0vi5xb26b-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/01b2yk5aan6avqr2x962zjigldavjxx7-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


djvulibre-3.5.28

/nix/store/f6vavr33rb7754sr88d0miariphh9d1m-djvulibre-3.5.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-46310 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-46312 6.5


flex-2.6.4

/nix/store/dzaa5z8aa1khbq0y7cwwbgqcv1dzdwzw-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


fuse-2.9.9

/nix/store/4p300c3ncsa7kx7yaaj045yyji7w16kq-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/k77dnd31fxygi0p7dm6hcjqdvg70s17l-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/4m92flgkijc7jk2s4dxbkk3a8rh6kg5k-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/vzv96nlrv0bb57l3gcgqc63dkyrjdgvz-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.46.1

/nix/store/v86dakq8ai7jvyjkls694k2jmx2nivmh-git-2.46.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n79ayszanfwvccm7hv6y3siyqx238bdz-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.2

/nix/store/nr997ailf3xzchn3mj7awf1xf9yd3h53-go-1.23.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


hedgehog-1.4

/nix/store/8dnfinn2ydns5lk4gih2ck6phgxqqjh4-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/kip2hcqw1i0bhrml09m0mx968swdcm3q-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


http-client-0.7.17

/nix/store/czzc2yhb4y3qnarg5c4r0nf1c7ds5r5f-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


imagemagick-7.1.1-39

/nix/store/4jvfam0izmxf9qj12h0qp68n50qd1hnn-imagemagick-7.1.1-39.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5341 5.5


jbig2dec-0.20

/nix/store/6krnaanfha90d46mwdzv850s51s9f9n5-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/m7yh0bd50pmw66mjhzqhs25pwgbbd3xr-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libarchive-3.7.4

/nix/store/k7kcni38k2dpl0pfp7c7bzxpl7m1k40q-libarchive-3.7.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-48957 7.8
https://nvd.nist.gov/vuln/detail/CVE-2024-48958 7.8


libmemcached-1.0.18

/nix/store/6qzkr7h4xcisyzw5v0k0v3a3bvvg16nl-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/pgh2il2aaszxz1cs3xv5fnbv4rh28y4y-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


lodepng-3.10.1

/nix/store/6xhhdfksymzafn9paqpbx6g6035fq2v3-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


lua-5.2.4

/nix/store/70b70wyf4kh0d2gwpbrx1d23aw43daql-lua-5.2.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-43519 5.5


mercurial-6.8.1

/nix/store/23wgdfyg30v2lk90qw4g5fa6qh2l1680-mercurial-6.8.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43410 5.3


network-3.1.4.0

/nix/store/qk0rk8q0v7mdbavszdk7sr0k68f5a1l0-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/rh7xshnca5mzqinq7fkp7cggriximp06-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/7mk4hf33fyv5sclj35llic6kr0ldwpfp-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


oh-my-zsh-2024-10-01

/nix/store/xaqgmgszi4bzjpcjkn5lh2hvf8l7vly5-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openexr-2.5.10

/nix/store/36b6yi64b2kzzb68aimdjbd5w31cjpbv-openexr-2.5.10.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5841 9.1
https://nvd.nist.gov/vuln/detail/CVE-2021-23169 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-3598 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3605 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23215 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26260 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26945 5.5


openvpn-2.6.12

/nix/store/58pns609pf7a9vdlr82yqzdld9q0kpba-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/snf2sfqg5kil84k8lqg9409xf6iymr2y-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/7hwcl8hmns4k179n6gdsm89qhv5dzqj9-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


plasma-workspace-5.27.11.1

/nix/store/kilk1rc10vnjm5d005a1acjcsgr7nwas-plasma-workspace-5.27.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-1433 3.7


polkit-1.pam

/nix/store/qbwiff2wdc4qqvzrfdprjq5z6ac5qkkb-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


procps-3.3.17-binlore

/nix/store/482hcd9kvvhyi76mx4axgslg2fq332ad-procps-3.3.17-binlore.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


procps-3.3.17-lore-override

/nix/store/9zjqp409dyzsf7a20x84cgn063d6wmhq-procps-3.3.17-lore-override.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4016 3.3


python-2.7.18.8

/nix/store/az0r56fhh0bi6312cvzc482dn0i3rv4x-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.35

/nix/store/x1qhllxzrz2npbwjqf1ic06xv4jl1x7m-quote-1.0.35.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.36

/nix/store/mjq6f0x9pix375zrkq87pl7iyhyvyf1w-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.16

/nix/store/3kj8lncf3d4xrla85rw5w3w8iyrsxmyz-rubygems-3.5.16.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/17ayl9525cybch1kwgzy6kg28d5ww3fh-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/g8fxfiw3rq5cv7sqi63frc1v95n1l682-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/c3ablcvw26d1z4hvwx2lznrcdwdc9mvg-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/jqgbnvmd3scrsbms9h93wn0927kkxdh3-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.22

/nix/store/m16s87xm9q1hihznl6k8crgwzxykn1n0-semver-1.0.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/aiqv5nnjhf4k8xcxbjpy8mk8a69fcj66-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


snappy-1.2.1

/nix/store/4r5awssxpd7vqhb6v9ibhmlykw6xyz2j-snappy-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-28115 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-41330 9.8


stringbuilder-0.5.1

/nix/store/1avmira72yygg1wax5qbdqss2cq1ynn4-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


tap-1.0.1

/nix/store/1v4afn3md79gm9vlskxiyqzwavrbn6wh-tap-1.0.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-41940 5.4


unzip-6.0

/nix/store/8qnlqng8lbl66x7g4j437x6asgpj44i0-unzip-6.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4217 3.3


vault-0.3.1.5

/nix/store/k0wliv89vq21wx96jj946sw1v93k015i-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/q600jyl603xl2vfvkq4v3lb738vmp9f5-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/bx6xwj0hlpy259ymrnnmrfqqal2bfz32-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/09mdfxdj3rm6631sxis0b7f3k7kdf720-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/cv5bs3w87xan4sxfcwzcyzk0qsnmhay6-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/vidlqc6w1453qiylfmnjip83s7bwqfam-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/l8wmqr5yaw6kdp1cbss13k9vn8czhrb2-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/cw8m1nrh8d1gzhm9rrl5rmm24kv9v3iw-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/2j49g8rph5dszi6w2d81z5iqd5wq2h4g-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/2yxasr89809ia0883mpvr0mcrl5dc755-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/0za4mw58jc2m1lrlf9l6w3im6gib92kq-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/kbkhyabgg7gvv2r22dyws3nrg0k63nyd-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

@NoRePercussions NoRePercussions merged commit 1e8abff into main Oct 30, 2024
4 checks passed
@NoRePercussions NoRePercussions deleted the renovate/lock-file-maintenance branch October 30, 2024 18:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant