Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): lock file maintenance #131

Merged
merged 1 commit into from
Nov 26, 2024

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Nov 26, 2024

This PR contains the following updates:

Update Change
lockFileMaintenance All locks refreshed

🔧 This Pull Request updates lock files to use the latest dependency versions.


Configuration

📅 Schedule: Branch creation - "before 4am" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Copy link

Report for roland

Version changes:

Version 1 -> 2:
  dart-grammar: 0.0.0+rev=a7496b9 → 0.0.0+rev=e81af6a
  editorconfig-grammar: 0.0.0+rev=cfdc59c → 0.0.0+rev=e47638f
  extra: ∅ → ε, +35929.1 KiB
  gdscript-grammar: 0.0.0+rev=1f1e782 → 0.0.0+rev=bf39f1b
  go: 1.23.3 → ∅, -232857.0 KiB
  gren-grammar: 0.0.0+rev=c06e272 → 0.0.0+rev=df7992d
  index-x86_64: +1468.1 KiB
  initrd: ∅ → ε
  initrd-linux: 6.6.61 → 6.6.62, -20.7 KiB
  json-grammar: 0.0.0+rev=ee35a6e → 0.0.0+rev=4d770d3
  julia-grammar: 0.0.0+rev=a8e1262 → 0.0.0+rev=e01c928, +301.6 KiB
  just-grammar: 0.0.0+rev=1014d2f → 0.0.0+rev=11b8c43
  keymap: ∅ → ε
  linux: 6.6.61, 6.6.61-modules → 6.6.62, 6.6.62-modules, -46.5 KiB
  nix-grammar: 0.0.0+rev=0240bbf → 0.0.0+rev=0eca4c5
  nixos-configuration-reference: +37.3 KiB
  nixos-manual: +102.4 KiB
  nixos-system-roland: 25.05.20241115.5e4fbfb → 25.05.20241119.23e89b7
  nu-grammar: 0.0.0+rev=7e0f16f → 0.0.0+rev=45f9e51, -418.4 KiB
  ocaml-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  ocaml_interface-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  perl-grammar: 0.0.0+rev=76ab9a5 → 0.0.0+rev=089c124
  pug-grammar: 0.0.0+rev=a7ff31a → 0.0.0+rev=13e9195
  r-grammar: 0.0.0+rev=2097fa5 → 0.0.0+rev=c094bd5
  source: -2079.0 KiB
  sql-grammar: 0.0.0+rev=f551a8f → 0.0.0+rev=cf6e016, -8.1 KiB
  stage: ∅ → 1-init.sh, +22.0 KiB
  teal-grammar: 0.0.0+rev=485fbdc → 0.0.0+rev=a8901ac
  templ-grammar: 0.0.0+rev=73a5587 → 0.0.0+rev=c926ed7
  typst-grammar: 0.0.0+rev=8b8b16e → 0.0.0+rev=26dfb4b
  udev: +33.6 KiB
  v-grammar: 0.0.0+rev=8f1a06b → 0.0.0+rev=bb0a1bd
  vhdl-grammar: 0.0.0+rev=b4e73e0 → 0.0.0+rev=0703da9
  vimplugin-nvim-lspconfig: 2024-11-12 → 2024-11-17
  vimplugin-nvim-treesitter: 2024-11-13 → 2024-11-18
  wget: 1.24.5 → 1.25.0, +18.7 KiB
  xresources-grammar: 0.0.0+rev=a75056c → 0.0.0+rev=0e315b8
  zfs-kernel: 2.2.6-6.6.61 → 2.2.6-6.6.62
Security vulnerability report
68 derivations with active advisories
3 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/zn95q4flrjbgs0zckvs7nh6hfia6klmr-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/xngdb58ggdafdy2c5i27dsl797zj2axi-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/p2kv4m5jkacrhg22510qb59l7pqwrm7h-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/p95cnn3gna8ix579yjcg8ays36hk7gz8-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6.1

/nix/store/jqmb9a246gq9gwf912y93ld6n55q7xng-commonmark-0.2.6.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


cups-2.4.11

/nix/store/hhcrvmzc1pv1xmia4mv4hvgxdx2961b7-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/7kiia0prq7l9wcbflx11dgpq1l7rkvwg-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/gzmx45mddgsdm6jadd7nk2r7bq24mq9s-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/hf4par1vk72jrarx7cimdg49pnh365iy-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


ecdsa-0.14.8

/nix/store/jpl0c813b3xz302m6m6c3rln6ssnw3i5-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


flex-2.6.4

/nix/store/gblp7r8kdl1gfw9hxrrx0xgsxpapnr99-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


foundation-0.0.30

/nix/store/xdr4r3c690gf1mzzmv0ldg9pqcpq972m-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


fuse-2.9.9

/nix/store/sv7w4hd8b44f9f5xf91ifk7hxhlgl8cp-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/mzdmqmx45x500w5p681smvhc1bbxfh32-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/vqhp78yv4a52w1znkbxgym1bsh1j5ap6-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/d501c7jfvisxah7bpaw3a7lx0z1l26qn-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/faqnz9j01fxvqhbzw1a544g8cqcrygia-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n3cr5a9g8clpd0n3px2g8lalprwlqn0q-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.3

/nix/store/hr6yjfp34id9pnhbrwfzzr8hmzzrr01a-go-1.23.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ixkdgs95ripphp881ky4lsf07p3vwx1w-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/s8vdy267lmwz5xrkqh2fdan198sy4b3n-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/s929qagvnw27va20baczvxz87h7vwnn5-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/1znf7bab1lr5hmb1jb2c08bkgd7vxsyc-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/rd0xxcp06qrjs100dkjpaaw23rkf95sy-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/bi35c6fiikb06rs1c4fcngvkv3ls9q97-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/sipwc4afwv3ggzcwl1ryx8syfrirnqix-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/4y6fv07hl5vzp1g7pgdqsg33lavy7bni-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/spmw2sscm9ihrycdpll94xvx5xpmsq8m-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/2h7vzdk4iiwxkyfq46k3x3df6rwwyg69-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


jbig2dec-0.20

/nix/store/45fa6i7fcdh2xh3dhqcpybvgya409p4h-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/599gy2zlxs2sq3g086pigg1l1b9cwpn3-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/8py5s3ncx1q2d78lvxa0wcih0i181h12-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/gdvhl8h2mpxyyplxridaxpayppf763ns-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/rql6m7vn0cnjql8fmpc8s9k88jrfl5yx-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


libssh2-1.11.1

/nix/store/6nw4iifhabnr6rdhv1k6q2fl7ni97zz8-libssh2-1.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-48795 5.9


lodepng-3.10.1

/nix/store/ds8s3dc6n4ivrpdbaa6vpzav4hn3z2dg-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


network-3.1.4.0

/nix/store/azf2zjwjqh8aj591gl74dhf0cdk57sj2-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/804vjz8k6r0xfwj1ysq709n8rrq91d5p-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/4r7j4sw2a4kvclq4lhbgwdjyrprhr437-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/8np0m355vym07hi38klxqgdg483ya3fl-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6446 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/kbxq3b87nc17n4ivfysnqlgxqlh16w3s-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/4vxhzs2ppk5mb6bvb7l6yknl2y2ykc81-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/qg2mlfvjfqi1a038a5k9pwdchc5ghxy2-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/jxjahh2zy6c88f5p1wcp6nhphndzbyr6-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/qj2ifszk8cb930gdczy1p4ipwmny4745-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/h9c3qljkm42malpaq49mhrfbi9n9pf4p-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/qv8h7p2pvymbfgqbra8a5l4ii2z40v2h-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/03lkgsg6cx8bj8nv5pa7ymfsaz2b6x33-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/q0kd8pjiw3ikjvrbw0jzsy4fv5msw7kb-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/iw89zgcki5vq55r3zh1m87zxcxhinprp-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/158bd0vmrf2z74bv63pm48q1w4xazgby-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/1i7sgplbalwl42cqk4mcav59c5ll3fp3-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/zcrkq8hb9jwqllrn680zbzh0p7lxs0js-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.23

/nix/store/vrpilkwjxg3w0yh6hnk1s0hrgp83fq01-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/60w223rgccfrrasxijx9lx86bsaxryvh-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/fzf8z5wm2pq8x5h3fcl1piyvblxrdi1k-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


vault-0.3.1.5

/nix/store/592r71r3qkk0idfakk1s0d2jqd6wgpwn-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/0bpmcbhfvq20bxigymw6z0rcszv66h58-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/v5l0p5lm03ciic6mrql9pjr04f4w9ggr-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/16xbjk0dk2099907k0bskl1kfn88if7i-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/lkl36vb7vz05jlflilwwnppzmh7xidrd-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/92rmmcjskx08m3j95griqsw8fmd59xhi-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/7sdg345ssbgwnp3769z4acq669ng4gld-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/qr7vxhbaxc298w4jgaxr46v5ii45yw36-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/mq38vzixgc5pac144kf99q8s4sr5rdf4-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/w1q0dssc3nn0zv0zvh7kn3rkx56x6yrc-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/7v6bi3n199ig5wnz58rlx3ic2rqb9v9j-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/6nvdzyjrhc9h84y2iqby9qpzw0v7gz4d-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for marlon

Version changes:

Version 1 -> 2:
  dart-grammar: 0.0.0+rev=a7496b9 → 0.0.0+rev=e81af6a
  editorconfig-grammar: 0.0.0+rev=cfdc59c → 0.0.0+rev=e47638f
  gdscript-grammar: 0.0.0+rev=1f1e782 → 0.0.0+rev=bf39f1b
  go: 1.23.3 → ∅, -232857.0 KiB
  gren-grammar: 0.0.0+rev=c06e272 → 0.0.0+rev=df7992d
  index-x86_64: +1468.1 KiB
  initrd-linux: 6.6.61 → 6.6.62
  json-grammar: 0.0.0+rev=ee35a6e → 0.0.0+rev=4d770d3
  julia-grammar: 0.0.0+rev=a8e1262 → 0.0.0+rev=e01c928, +301.6 KiB
  just-grammar: 0.0.0+rev=1014d2f → 0.0.0+rev=11b8c43
  linux: 6.6.61, 6.6.61-modules → 6.6.62, 6.6.62-modules, -46.3 KiB
  nix-grammar: 0.0.0+rev=0240bbf → 0.0.0+rev=0eca4c5
  nixos-configuration-reference: +37.3 KiB
  nixos-manual: +102.4 KiB
  nixos-system-marlon: 25.05.20241115.5e4fbfb → 25.05.20241119.23e89b7
  nu-grammar: 0.0.0+rev=7e0f16f → 0.0.0+rev=45f9e51, -418.4 KiB
  ocaml-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  ocaml_interface-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  perl-grammar: 0.0.0+rev=76ab9a5 → 0.0.0+rev=089c124
  podman: 5.2.3 → 5.3.0, +663.9 KiB
  pug-grammar: 0.0.0+rev=a7ff31a → 0.0.0+rev=13e9195
  r-grammar: 0.0.0+rev=2097fa5 → 0.0.0+rev=c094bd5
  source: -2079.0 KiB
  sql-grammar: 0.0.0+rev=f551a8f → 0.0.0+rev=cf6e016, -8.1 KiB
  teal-grammar: 0.0.0+rev=485fbdc → 0.0.0+rev=a8901ac
  templ-grammar: 0.0.0+rev=73a5587 → 0.0.0+rev=c926ed7
  typst-grammar: 0.0.0+rev=8b8b16e → 0.0.0+rev=26dfb4b
  v-grammar: 0.0.0+rev=8f1a06b → 0.0.0+rev=bb0a1bd
  vhdl-grammar: 0.0.0+rev=b4e73e0 → 0.0.0+rev=0703da9
  vimplugin-nvim-lspconfig: 2024-11-12 → 2024-11-17
  vimplugin-nvim-treesitter: 2024-11-13 → 2024-11-18
  wget: 1.24.5 → 1.25.0, +18.7 KiB
  xresources-grammar: 0.0.0+rev=a75056c → 0.0.0+rev=0e315b8
  zfs-kernel: 2.2.6-6.6.61 → 2.2.6-6.6.62
Security vulnerability report
69 derivations with active advisories
3 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/zn95q4flrjbgs0zckvs7nh6hfia6klmr-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/xngdb58ggdafdy2c5i27dsl797zj2axi-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/p2kv4m5jkacrhg22510qb59l7pqwrm7h-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/p95cnn3gna8ix579yjcg8ays36hk7gz8-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6.1

/nix/store/jqmb9a246gq9gwf912y93ld6n55q7xng-commonmark-0.2.6.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


cups-2.4.11

/nix/store/hhcrvmzc1pv1xmia4mv4hvgxdx2961b7-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/7kiia0prq7l9wcbflx11dgpq1l7rkvwg-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/gzmx45mddgsdm6jadd7nk2r7bq24mq9s-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/15av1v5l8wdgz8sx25si54vbkfxg71n6-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


ecdsa-0.14.8

/nix/store/jpl0c813b3xz302m6m6c3rln6ssnw3i5-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


flex-2.6.4

/nix/store/gblp7r8kdl1gfw9hxrrx0xgsxpapnr99-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


foundation-0.0.30

/nix/store/xdr4r3c690gf1mzzmv0ldg9pqcpq972m-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


fuse-2.9.9

/nix/store/sv7w4hd8b44f9f5xf91ifk7hxhlgl8cp-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/mzdmqmx45x500w5p681smvhc1bbxfh32-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/vqhp78yv4a52w1znkbxgym1bsh1j5ap6-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/d501c7jfvisxah7bpaw3a7lx0z1l26qn-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/faqnz9j01fxvqhbzw1a544g8cqcrygia-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n3cr5a9g8clpd0n3px2g8lalprwlqn0q-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.3

/nix/store/hr6yjfp34id9pnhbrwfzzr8hmzzrr01a-go-1.23.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ixkdgs95ripphp881ky4lsf07p3vwx1w-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/s8vdy267lmwz5xrkqh2fdan198sy4b3n-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/s929qagvnw27va20baczvxz87h7vwnn5-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/1znf7bab1lr5hmb1jb2c08bkgd7vxsyc-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/rd0xxcp06qrjs100dkjpaaw23rkf95sy-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/bi35c6fiikb06rs1c4fcngvkv3ls9q97-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/sipwc4afwv3ggzcwl1ryx8syfrirnqix-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/4y6fv07hl5vzp1g7pgdqsg33lavy7bni-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/spmw2sscm9ihrycdpll94xvx5xpmsq8m-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/2h7vzdk4iiwxkyfq46k3x3df6rwwyg69-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


jbig2dec-0.20

/nix/store/45fa6i7fcdh2xh3dhqcpybvgya409p4h-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/599gy2zlxs2sq3g086pigg1l1b9cwpn3-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/8py5s3ncx1q2d78lvxa0wcih0i181h12-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/gdvhl8h2mpxyyplxridaxpayppf763ns-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/rql6m7vn0cnjql8fmpc8s9k88jrfl5yx-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


libssh2-1.11.1

/nix/store/6nw4iifhabnr6rdhv1k6q2fl7ni97zz8-libssh2-1.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-48795 5.9


lodepng-3.10.1

/nix/store/ds8s3dc6n4ivrpdbaa6vpzav4hn3z2dg-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


mercurial-6.8.2

/nix/store/h45lrks32sqddac5c3lyzcfdcdmvjy36-mercurial-6.8.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43410 5.3


network-3.1.4.0

/nix/store/azf2zjwjqh8aj591gl74dhf0cdk57sj2-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/804vjz8k6r0xfwj1ysq709n8rrq91d5p-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/4r7j4sw2a4kvclq4lhbgwdjyrprhr437-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/8np0m355vym07hi38klxqgdg483ya3fl-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6446 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/kbxq3b87nc17n4ivfysnqlgxqlh16w3s-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/4vxhzs2ppk5mb6bvb7l6yknl2y2ykc81-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/qg2mlfvjfqi1a038a5k9pwdchc5ghxy2-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/jxjahh2zy6c88f5p1wcp6nhphndzbyr6-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/qj2ifszk8cb930gdczy1p4ipwmny4745-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/h9c3qljkm42malpaq49mhrfbi9n9pf4p-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/qv8h7p2pvymbfgqbra8a5l4ii2z40v2h-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/03lkgsg6cx8bj8nv5pa7ymfsaz2b6x33-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/q0kd8pjiw3ikjvrbw0jzsy4fv5msw7kb-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/iw89zgcki5vq55r3zh1m87zxcxhinprp-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/158bd0vmrf2z74bv63pm48q1w4xazgby-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/1i7sgplbalwl42cqk4mcav59c5ll3fp3-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/zcrkq8hb9jwqllrn680zbzh0p7lxs0js-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.23

/nix/store/vrpilkwjxg3w0yh6hnk1s0hrgp83fq01-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/60w223rgccfrrasxijx9lx86bsaxryvh-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/fzf8z5wm2pq8x5h3fcl1piyvblxrdi1k-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


vault-0.3.1.5

/nix/store/592r71r3qkk0idfakk1s0d2jqd6wgpwn-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/0bpmcbhfvq20bxigymw6z0rcszv66h58-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/v5l0p5lm03ciic6mrql9pjr04f4w9ggr-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/16xbjk0dk2099907k0bskl1kfn88if7i-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/lkl36vb7vz05jlflilwwnppzmh7xidrd-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/92rmmcjskx08m3j95griqsw8fmd59xhi-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/7sdg345ssbgwnp3769z4acq669ng4gld-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/qr7vxhbaxc298w4jgaxr46v5ii45yw36-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/mq38vzixgc5pac144kf99q8s4sr5rdf4-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/w1q0dssc3nn0zv0zvh7kn3rkx56x6yrc-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/7v6bi3n199ig5wnz58rlx3ic2rqb9v9j-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/6nvdzyjrhc9h84y2iqby9qpzw0v7gz4d-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for vic

Version changes:

Version 1 -> 2:
  dart-grammar: 0.0.0+rev=a7496b9 → 0.0.0+rev=e81af6a
  editorconfig-grammar: 0.0.0+rev=cfdc59c → 0.0.0+rev=e47638f
  fc: +39.4 KiB
  gdscript-grammar: 0.0.0+rev=1f1e782 → 0.0.0+rev=bf39f1b
  go: 1.23.3 → ∅, -232857.0 KiB
  gren-grammar: 0.0.0+rev=c06e272 → 0.0.0+rev=df7992d
  ibus: 1.5.30 → 1.5.31, +85.6 KiB
  index-x86_64: +1468.1 KiB
  initrd-linux: 6.6.61 → 6.6.62
  json-grammar: 0.0.0+rev=ee35a6e → 0.0.0+rev=4d770d3
  julia-grammar: 0.0.0+rev=a8e1262 → 0.0.0+rev=e01c928, +301.6 KiB
  just-grammar: 0.0.0+rev=1014d2f → 0.0.0+rev=11b8c43
  linux: 6.6.61, 6.6.61-modules → 6.6.62, 6.6.62-modules, -48.3 KiB
  lsof: 4.99.3 → 4.99.4
  nix-grammar: 0.0.0+rev=0240bbf → 0.0.0+rev=0eca4c5
  nixos-configuration-reference: +37.3 KiB
  nixos-manual: +102.4 KiB
  nixos-system-vic: 25.05.20241115.5e4fbfb → 25.05.20241119.23e89b7
  noto-fonts: 24.3.1 → 2024.11.01, -1346.7 KiB
  nu-grammar: 0.0.0+rev=7e0f16f → 0.0.0+rev=45f9e51, -418.4 KiB
  ocaml-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  ocaml_interface-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130
  perl-grammar: 0.0.0+rev=76ab9a5 → 0.0.0+rev=089c124
  pug-grammar: 0.0.0+rev=a7ff31a → 0.0.0+rev=13e9195
  r-grammar: 0.0.0+rev=2097fa5 → 0.0.0+rev=c094bd5
  source: -2079.0 KiB
  sql-grammar: 0.0.0+rev=f551a8f → 0.0.0+rev=cf6e016, -8.1 KiB
  teal-grammar: 0.0.0+rev=485fbdc → 0.0.0+rev=a8901ac
  templ-grammar: 0.0.0+rev=73a5587 → 0.0.0+rev=c926ed7
  typst-grammar: 0.0.0+rev=8b8b16e → 0.0.0+rev=26dfb4b
  v-grammar: 0.0.0+rev=8f1a06b → 0.0.0+rev=bb0a1bd
  vhdl-grammar: 0.0.0+rev=b4e73e0 → 0.0.0+rev=0703da9
  vimplugin-nvim-lspconfig: 2024-11-12 → 2024-11-17
  vimplugin-nvim-treesitter: 2024-11-13 → 2024-11-18
  wget: 1.24.5 → 1.25.0, +18.7 KiB
  xresources-grammar: 0.0.0+rev=a75056c → 0.0.0+rev=0e315b8
Security vulnerability report
80 derivations with active advisories
3 derivations left out due to whitelisting

accountsservice-23.13.9

/nix/store/z9lfac7w0yk3mhgw8g4giq322w02n0sq-accountsservice-23.13.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3297 7.8


audiofile-0.3.6

/nix/store/zn95q4flrjbgs0zckvs7nh6hfia6klmr-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/xngdb58ggdafdy2c5i27dsl797zj2axi-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


bind-9.18.28

/nix/store/p2kv4m5jkacrhg22510qb59l7pqwrm7h-bind-9.18.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6470 7.5


cereal-0.5.8.3

/nix/store/p95cnn3gna8ix579yjcg8ays36hk7gz8-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


commonmark-0.2.6.1

/nix/store/jqmb9a246gq9gwf912y93ld6n55q7xng-commonmark-0.2.6.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-10010 6.1


console-0.15.8

/nix/store/xz6y85rz7rzjmadkw29ybn0hzzfyzafp-console-0.15.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-33955 5.3


cups-2.4.11

/nix/store/hhcrvmzc1pv1xmia4mv4hvgxdx2961b7-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/7kiia0prq7l9wcbflx11dgpq1l7rkvwg-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/gzmx45mddgsdm6jadd7nk2r7bq24mq9s-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/gvqygx55snd0bga8cbrkk1mm3bi6kxq0-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-12749 7.1
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


djvulibre-3.5.28

/nix/store/gghbyy9xwybg0b4839fzmx8xmyd4ym5p-djvulibre-3.5.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-46310 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-46312 6.5


ecdsa-0.14.8

/nix/store/jpl0c813b3xz302m6m6c3rln6ssnw3i5-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


flex-2.6.4

/nix/store/gblp7r8kdl1gfw9hxrrx0xgsxpapnr99-flex-2.6.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6293 5.5


foundation-0.0.30

/nix/store/xdr4r3c690gf1mzzmv0ldg9pqcpq972m-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


fuse-2.9.9

/nix/store/sv7w4hd8b44f9f5xf91ifk7hxhlgl8cp-fuse-2.9.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9

/nix/store/mzdmqmx45x500w5p681smvhc1bbxfh32-fuse-2.9.9-closefrom-glibc-2-34.patch?id=8a970396fca7aca2d5a761b8e7a8242f1eef14c9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


fuse-3.16.2

/nix/store/vqhp78yv4a52w1znkbxgym1bsh1j5ap6-fuse-3.16.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-14860 6.5
https://nvd.nist.gov/vuln/detail/CVE-2019-14900 6.5


gcc-13.3.0

/nix/store/d501c7jfvisxah7bpaw3a7lx0z1l26qn-gcc-13.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/faqnz9j01fxvqhbzw1a544g8cqcrygia-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3
https://nvd.nist.gov/vuln/detail/CVE-2019-1003010 4.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/n3cr5a9g8clpd0n3px2g8lalprwlqn0q-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.3

/nix/store/hr6yjfp34id9pnhbrwfzzr8hmzzrr01a-go-1.23.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ixkdgs95ripphp881ky4lsf07p3vwx1w-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/s8vdy267lmwz5xrkqh2fdan198sy4b3n-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/s929qagvnw27va20baczvxz87h7vwnn5-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/1znf7bab1lr5hmb1jb2c08bkgd7vxsyc-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/rd0xxcp06qrjs100dkjpaaw23rkf95sy-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/bi35c6fiikb06rs1c4fcngvkv3ls9q97-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/sipwc4afwv3ggzcwl1ryx8syfrirnqix-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/4y6fv07hl5vzp1g7pgdqsg33lavy7bni-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/spmw2sscm9ihrycdpll94xvx5xpmsq8m-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/2h7vzdk4iiwxkyfq46k3x3df6rwwyg69-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


imagemagick-7.1.1-40

/nix/store/gayjgq26l6zzw4kj20abg3lx0mx786jc-imagemagick-7.1.1-40.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5341 5.5


jbig2dec-0.20

/nix/store/45fa6i7fcdh2xh3dhqcpybvgya409p4h-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/3n2qzmy7kficx2v6y9n6xqb9gxj1qjq2-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/8py5s3ncx1q2d78lvxa0wcih0i181h12-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/gdvhl8h2mpxyyplxridaxpayppf763ns-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/rql6m7vn0cnjql8fmpc8s9k88jrfl5yx-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


libssh2-1.11.1

/nix/store/6nw4iifhabnr6rdhv1k6q2fl7ni97zz8-libssh2-1.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-48795 5.9


lodepng-3.10.1

/nix/store/ds8s3dc6n4ivrpdbaa6vpzav4hn3z2dg-lodepng-3.10.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-17178 7.5


lua-5.2.4

/nix/store/7wswqsz62g5zxdg9ibccjylfz45bwkrh-lua-5.2.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-43519 5.5


mercurial-6.8.2

/nix/store/h45lrks32sqddac5c3lyzcfdcdmvjy36-mercurial-6.8.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43410 5.3


network-3.1.4.0

/nix/store/azf2zjwjqh8aj591gl74dhf0cdk57sj2-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/804vjz8k6r0xfwj1ysq709n8rrq91d5p-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/4r7j4sw2a4kvclq4lhbgwdjyrprhr437-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/8np0m355vym07hi38klxqgdg483ya3fl-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-6446 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/kbxq3b87nc17n4ivfysnqlgxqlh16w3s-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openexr-2.5.10

/nix/store/5aa2335z19lhds6wwqmyqp1y76jqkpjn-openexr-2.5.10.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5841 9.1
https://nvd.nist.gov/vuln/detail/CVE-2021-23169 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-3598 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3605 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23215 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26260 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26945 5.5


openvpn-2.6.12

/nix/store/4vxhzs2ppk5mb6bvb7l6yknl2y2ykc81-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


patch-2.7.6

/nix/store/qg2mlfvjfqi1a038a5k9pwdchc5ghxy2-patch-2.7.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2019-20633 5.5


pip-20.3.4-source

/nix/store/jxjahh2zy6c88f5p1wcp6nhphndzbyr6-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


plasma-workspace-5.27.11.1

/nix/store/a19cqrawprh8ygvd7p6qrxrxvkxkvr58-plasma-workspace-5.27.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-1433 3.7


polkit-1.pam

/nix/store/50q4askcvyh4b0648nywr2ja8vk3zqzg-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/h9c3qljkm42malpaq49mhrfbi9n9pf4p-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2019-9674 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.35

/nix/store/ms58d35b6wc9b8jlfhbnsm83870ck1wy-quote-1.0.35.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.36

/nix/store/qv8h7p2pvymbfgqbra8a5l4ii2z40v2h-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/03lkgsg6cx8bj8nv5pa7ymfsaz2b6x33-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/q0kd8pjiw3ikjvrbw0jzsy4fv5msw7kb-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/iw89zgcki5vq55r3zh1m87zxcxhinprp-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/158bd0vmrf2z74bv63pm48q1w4xazgby-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2019-11644 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/1i7sgplbalwl42cqk4mcav59c5ll3fp3-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37966 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-38023 8.1
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-37967 7.2
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/zcrkq8hb9jwqllrn680zbzh0p7lxs0js-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.22

/nix/store/aa35cshinkmj3qw69zjg6vry58jwy395-semver-1.0.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


semver-1.0.23

/nix/store/vrpilkwjxg3w0yh6hnk1s0hrgp83fq01-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/60w223rgccfrrasxijx9lx86bsaxryvh-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


snappy-1.2.1

/nix/store/c1fq26ns7vvbymck7xd43fr0g38ivsg7-snappy-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-28115 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-41330 9.8


stringbuilder-0.5.1

/nix/store/fzf8z5wm2pq8x5h3fcl1piyvblxrdi1k-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


tap-1.0.1

/nix/store/lrvn5mwmif7d20xmrjwwmsp9mk3b3zfq-tap-1.0.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-41940 5.4


vault-0.3.1.5

/nix/store/592r71r3qkk0idfakk1s0d2jqd6wgpwn-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/0bpmcbhfvq20bxigymw6z0rcszv66h58-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/v5l0p5lm03ciic6mrql9pjr04f4w9ggr-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/16xbjk0dk2099907k0bskl1kfn88if7i-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/lkl36vb7vz05jlflilwwnppzmh7xidrd-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/92rmmcjskx08m3j95griqsw8fmd59xhi-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/7sdg345ssbgwnp3769z4acq669ng4gld-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/qr7vxhbaxc298w4jgaxr46v5ii45yw36-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/mq38vzixgc5pac144kf99q8s4sr5rdf4-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/w1q0dssc3nn0zv0zvh7kn3rkx56x6yrc-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/7v6bi3n199ig5wnz58rlx3ic2rqb9v9j-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/6nvdzyjrhc9h84y2iqby9qpzw0v7gz4d-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

Report for elmira

Version changes:

Version 1 -> 2:'
'  dart-grammar: 0.0.0+rev=a7496b9 → 0.0.0+rev=e81af6a'
'  darwin-system: 25.05.20241115.5e4fbfb+darwin4.c60b5c9 → 25.05.20241119.23e89b7+darwin4.3c52583'
'  editorconfig-grammar: 0.0.0+rev=cfdc59c → 0.0.0+rev=e47638f'
'  gdscript-grammar: 0.0.0+rev=1f1e782 → 0.0.0+rev=bf39f1b'
'  go: 1.23.3 → ∅, -231288.2 KiB'
'  gren-grammar: 0.0.0+rev=c06e272 → 0.0.0+rev=df7992d'
'  index-aarch64: +225.5 KiB'
'  json-grammar: 0.0.0+rev=ee35a6e → 0.0.0+rev=4d770d3'
'  julia-grammar: 0.0.0+rev=a8e1262 → 0.0.0+rev=e01c928, +291.9 KiB'
'  just-grammar: 0.0.0+rev=1014d2f → 0.0.0+rev=11b8c43'
'  nix-grammar: 0.0.0+rev=0240bbf → 0.0.0+rev=0eca4c5'
'  nu-grammar: 0.0.0+rev=7e0f16f → 0.0.0+rev=45f9e51, -422.6 KiB'
'  ocaml-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130'
'  ocaml_interface-grammar: 0.0.0+rev=26bc61c → 0.0.0+rev=98c2130'
'  perl-grammar: 0.0.0+rev=76ab9a5 → 0.0.0+rev=089c124'
'  pug-grammar: 0.0.0+rev=a7ff31a → 0.0.0+rev=13e9195'
'  r-grammar: 0.0.0+rev=2097fa5 → 0.0.0+rev=c094bd5, +16.1 KiB'
'  source: -2079.0 KiB'
'  sql-grammar: 0.0.0+rev=f551a8f → 0.0.0+rev=cf6e016, -16.3 KiB'
'  teal-grammar: 0.0.0+rev=485fbdc → 0.0.0+rev=a8901ac'
'  templ-grammar: 0.0.0+rev=73a5587 → 0.0.0+rev=c926ed7'
'  typst-grammar: 0.0.0+rev=8b8b16e → 0.0.0+rev=26dfb4b'
'  v-grammar: 0.0.0+rev=8f1a06b → 0.0.0+rev=bb0a1bd'
'  vhdl-grammar: 0.0.0+rev=b4e73e0 → 0.0.0+rev=0703da9'
'  vimplugin-nvim-lspconfig: 2024-11-12 → 2024-11-17'
'  vimplugin-nvim-treesitter: 2024-11-13 → 2024-11-18'
'  wget: 1.24.5 → 1.25.0, +19.3 KiB'
'  xresources-grammar: 0.0.0+rev=a75056c → 0.0.0+rev=0e315b8
Security vulnerability report
53 derivations with active advisories'
'3 derivations left out due to whitelisting'
''
'------------------------------------------------------------------------'
'Security-11.0'
''
'/nix/store/wxvx5k4xpyzby7i59m24d4bx8acf6i6h-Security-11.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-34893    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37347    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37348    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-3779     5.5'
''
'------------------------------------------------------------------------'
'cereal-0.5.8.3'
''
'/nix/store/kawikgrpnfm66y4d3gh9cz997442j5q9-cereal-0.5.8.3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11105    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11104    5.3'
''
'------------------------------------------------------------------------'
'commonmark-0.2.6.1'
''
'/nix/store/9n932n0l058cw2ddbyzd07dxlx91ndp0-commonmark-0.2.6.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-10010    6.1'
''
'------------------------------------------------------------------------'
'dash-0.5.12'
''
'/nix/store/3s1asfhrbbrkfmf2j7pwiksadzapkiaq-dash-0.5.12.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-21485    5.4'
''
'------------------------------------------------------------------------'
'ecdsa-0.14.8'
''
'/nix/store/h7hrvcb6wd69d7kjkj5rl4sf6wn0jf04-ecdsa-0.14.8.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23342    7.4'
''
'------------------------------------------------------------------------'
'flex-2.6.4'
''
'/nix/store/4zdlsilrh1af5fi0yic8l1a8wwgvymkz-flex-2.6.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-6293     5.5'
''
'------------------------------------------------------------------------'
'foundation-0.0.30'
''
'/nix/store/ir1s4v9fp9ha09vrci6ahqw73s7v1iiq-foundation-0.0.30.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-26304    7.5'
''
'------------------------------------------------------------------------'
'gcc-13.3.0'
''
'/nix/store/f8n159dq09497f880ydyzbdis7k158sl-gcc-13.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-4039     4.8'
''
'------------------------------------------------------------------------'
'git-2.47.0'
''
'/nix/store/krq2jvfv240zsy98b1alc41w9hgp9qg0-git-2.47.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36882    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-30947    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36883    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38663    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-21684    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-2136     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36884    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-1003010  4.3'
''
'------------------------------------------------------------------------'
'go-1.21.0-darwin-arm64-bootstrap'
''
'/nix/store/1hixdamfybfywdhcc8lqz2cb665iwn5y-go-1.21.0-darwin-arm64-bootstrap.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39320    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24790    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39323    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39321    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39322    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39325    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-44487    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39318    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39319    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24789    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'go-1.23.3'
''
'/nix/store/mv8bpnbfg4j1gc7vnsq6glxdnrnz5smr-go-1.23.3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'h2-0.3.26'
''
'/nix/store/68rbq8an991igf48yls091qzqzxr2081-h2-0.3.26.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-45868    7.8'
''
'------------------------------------------------------------------------'
'h2-0.4.6'
''
'/nix/store/j5dmyvhcww04jzz8l7l4wddlyvpzp26w-h2-0.4.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-45868    7.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4'
''
'/nix/store/w4i5hdavsx1rw0s274h07phnaydmqxzl-hedgehog-1.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4-r8.cabal'
''
'/nix/store/82s2vfs7b3gij0wgr4lhqgjy7iz9wpb2-hedgehog-1.4-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'home-0.5.9'
''
'/nix/store/kzdd6qfa25xr0qs0l7p2xi8192r14brb-home-0.5.9.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-3612     8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-25264    6.7'
''
'------------------------------------------------------------------------'
'http-0.2.12'
''
'/nix/store/j1f371lw33rwi4das826jnlbqbbhxxdj-http-0.2.12.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-35669    6.1'
''
'------------------------------------------------------------------------'
'http-1.1.0'
''
'/nix/store/bndiaz9j5qfyk226gjw5513wp5ysdgh2-http-1.1.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36032    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-26044    5.3'
''
'------------------------------------------------------------------------'
'http-client-0.7.17'
''
'/nix/store/70a4xy77f0ld2y3a84am5var77vwxppf-http-client-0.7.17.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11021    7.5'
''
'------------------------------------------------------------------------'
'hyper-0.14.30'
''
'/nix/store/5pghlkc96m8mpr8b1iqfwds0rinl40sq-hyper-0.14.30.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23741    9.8'
''
'------------------------------------------------------------------------'
'hyper-1.4.1'
''
'/nix/store/629bbxpa3brr6p3zl6xb4x7rz41k9yrg-hyper-1.4.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23741    9.8'
''
'------------------------------------------------------------------------'
'jbig2dec-0.20'
''
'/nix/store/cz81z6wqmdjm3h14q3khcw5w82l7jxn8-jbig2dec-0.20.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-46361    6.5'
''
'------------------------------------------------------------------------'
'lapack-3'
''
'/nix/store/p7zvfvhlxvaixw5zqbf7r0jq8xpz21h4-lapack-3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4048     9.1'
''
'------------------------------------------------------------------------'
'libmemcached-1.0.18'
''
'/nix/store/f17pxbwh36rk06cwcp3dnr5i12wn1j1f-libmemcached-1.0.18.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-27478    6.5'
''
'------------------------------------------------------------------------'
'libssh2-1.11.1'
''
'/nix/store/fznygif80zj53xylzsjysx8ivv7c6q81-libssh2-1.11.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-48795    5.9'
''
'------------------------------------------------------------------------'
'lodepng-3.10.1'
''
'/nix/store/9zs5awjqi956qfvmq9nq6hppsqq6ywbn-lodepng-3.10.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-17178    7.5'
''
'------------------------------------------------------------------------'
'lua-5.2.4'
''
'/nix/store/bkrf1w74kyfqf2b09zby8psc38jqsvn7-lua-5.2.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-43519    5.5'
''
'------------------------------------------------------------------------'
'mercurial-6.8.2'
''
'/nix/store/c51cvjbcjwdb34r7d1yh2vs6blfqlan9-mercurial-6.8.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-43410    5.3'
''
'------------------------------------------------------------------------'
'network-3.1.4.0'
''
'/nix/store/w8cbqz5k6gb04jvkv945m8fpv664bg7l-network-3.1.4.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'network-3.1.4.0-r1.cabal'
''
'/nix/store/1kid7vqa5ysckfv5mgxwxp5yj2y5l7yw-network-3.1.4.0-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'ninja-1.12.1'
''
'/nix/store/nzdzh6gg3lgvs8i7lz21fal4y3nddf4h-ninja-1.12.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4336     9.8'
''
'------------------------------------------------------------------------'
'numpy-0.21.0'
''
'/nix/store/m7nd5x1dnn0d8v2311lyacddggj7462h-numpy-0.21.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-6446     9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41496    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-34141    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41495    5.3'
''
'------------------------------------------------------------------------'
'oh-my-zsh-2024-10-01'
''
'/nix/store/wxyjs1spd77y4dpff7jbbyamr0kpxfyl-oh-my-zsh-2024-10-01.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3727     9.8'
''
'------------------------------------------------------------------------'
'openmp-16.0.6'
''
'/nix/store/z69cbkmdx8nsn6q84qp7k0kc8xzjd77p-openmp-16.0.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-26345    7.3'
''
'------------------------------------------------------------------------'
'patch-2.7.6'
''
'/nix/store/sy5c1wwxzbz5gh17wgjjgdng25ylbzid-patch-2.7.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2019-20633    5.5'
''
'------------------------------------------------------------------------'
'quote-1.0.36'
''
'/nix/store/c0798vvla0hv13b1gni1a9rsfi57a6dx-quote-1.0.36.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-16194    5.3'
''
'------------------------------------------------------------------------'
'quote-1.0.37'
''
'/nix/store/mz0683rg1lbhbfdhk39fakizckv02ra4-quote-1.0.37.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-16194    5.3'
''
'------------------------------------------------------------------------'
'rubygems-3.5.22'
''
'/nix/store/n05ly5g805w752dq8s24l9h1zdk6xy26-rubygems-3.5.22.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36073    8.8'
''
'------------------------------------------------------------------------'
'safe-0.3.21'
''
'/nix/store/gs9svgp7k93x9wcdf51fnk2bcafi6iy0-safe-0.3.21.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2019-11644    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'safe-0.3.21-r1.cabal'
''
'/nix/store/cbkswz5cs4sxsz99njw787ia0yfnn9zk-safe-0.3.21-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2019-11644    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'sassc-3.6.2'
''
'/nix/store/cd85p79sidmyxj6j1z02w335kkr2awqk-sassc-3.6.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-43357    7.5'
''
'------------------------------------------------------------------------'
'semver-1.0.23'
''
'/nix/store/sf06nggyg1dcbvbyi9gbvxkjm9mx3wv6-semver-1.0.23.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-25883    7.5'
''
'------------------------------------------------------------------------'
'shellcheck-0.10.0'
''
'/nix/store/jmg763cc9q6xy7bm929ir7sl96wkvmr7-shellcheck-0.10.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-28794    9.8'
''
'------------------------------------------------------------------------'
'stringbuilder-0.5.1'
''
'/nix/store/52xffghk55fp04fxsw89dfy63fsv3d64-stringbuilder-0.5.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-21524    9.1'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5'
''
'/nix/store/g4flxmj45fl6x9v9ab8c75w3z6ij6gpl-vault-0.3.1.5.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5-r8.cabal'
''
'/nix/store/6ixnx2s87d82zrqfs9qlkr66ams2lwca-vault-0.3.1.5-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'warp-3.3.31'
''
'/nix/store/zh3ca1xy0ral3yw647w7bcl9cqliya9m-warp-3.3.31.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3320     9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3512     8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4428     8.0'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2145     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2225     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0652     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1412     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1862     7.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2754     6.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4457     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0238     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0654     3.7'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2'
''
'/nix/store/idl3vpvax81bhlrrnivzpz8x75b92kcb-yaml-0.11.11.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2-r2.cabal'
''
'/nix/store/44cn9frmgjg5dxmpvwls8ksqrxmwhwmz-yaml-0.11.11.2-r2.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yasm-1.3.0'
''
'/nix/store/2nhd4jz6bn46z29f18c1s1j1m9vsji0d-yasm-1.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33454    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33455    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33456    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33457    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33458    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33459    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33460    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33461    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33462    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33463    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33464    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33465    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33466    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33467    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33468    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-30402    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31972    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31973    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31974    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-51258    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31975    3.3'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0'
''
'/nix/store/4l3616c16zaj1lml4316hh1amy09q1wi-zlib-0.6.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0-r5.cabal'
''
'/nix/store/w5ygdbaq7czxr3h7srbbpzvj58y27hw4-zlib-0.6.3.0-r5.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-1.3.1'
''
'/nix/store/5inj1mw4kvj3fjzmd47v50hbn1m616q4-zlib-1.3.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'use --show-whitelisted to see derivations with only whitelisted CVEs

@NoRePercussions NoRePercussions merged commit d1d588b into main Nov 26, 2024
4 checks passed
@NoRePercussions NoRePercussions deleted the renovate/lock-file-maintenance branch November 26, 2024 04:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant