Known vulnerabilities in rust-bat
Vendor:
Fedoraproject
Software:
rust-bat
Software CPE:
cpe:2.3:o:fedoraproject:rust-bat:*:*:*:*:*:fedora:*:*
Website:
https://getfedora.org/
Total vulnerabilities:
11
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU143594 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2026-5917 |
CWE-78 | High | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 16.08.2026 |
SB20260816530 SB2026081711 SB2026081712 and 7 more |
||
| #VU138491 - Improper Validation of Certificate with Host Mismatch CVE-2026-53583 |
CWE-297 | Medium | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 20.07.2026 |
SB2026072079 SB2026072444 SB2026072445 and 9 more |
||
| #VU138490 - Insufficiently Protected Credentials CVE-2026-53586 |
CWE-522 | Medium | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 20.07.2026 |
SB2026072079 SB2026072444 SB2026072445 and 10 more |
||
| #VU138489 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-53584 |
CWE-22 | Low | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 20.07.2026 |
SB2026072079 SB2026072444 SB2026072445 and 10 more |
||
| #VU138487 - Out-of-bounds read CVE-2026-53587 |
CWE-125 | Medium | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 20.07.2026 |
SB2026072079 SB2026072444 SB2026072445 and 10 more |
||
| #VU138485 - Allocation of Resources Without Limits or Throttling CVE-2026-53585 |
CWE-770 | Medium | 0.26.1-2.el9, 0.26.1-3.el10_3, 0.26.1-3.fc43, 0.26.1-3.fc44 | 20.07.2026 |
SB2026072079 SB2026072444 SB2026072445 and 10 more |
||
| #VU122823 - Type confusion CVE-2026-25537 |
CWE-843 | Medium | 0.24.0-12.el9, 0.24.0-13.el10_2, 0.25.0-9.fc42, 0.25.0-9.fc43, 0.25.0-9.fc44, 0.25.0-9.fc45 | 13.02.2026 |
SB2026021365 SB2026021366 SB2026021367 and 4 more |
||
| #VU86202 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2024-24575 |
CWE-835 | Medium | 0.24.0-2.el9, 0.24.0-3.fc38, 0.24.0-3.fc39, 0.24.0-3.fc40, 0.24.0-3.fc41 | 07.02.2024 |
SB2024020715 SB2024020801 SB2024020863 and 15 more |
||
| #VU86201 - Heap-based Buffer Overflow CVE-2024-24577 |
CWE-122 | High | 0.24.0-2.el9, 0.24.0-3.fc38, 0.24.0-3.fc39, 0.24.0-3.fc40, 0.24.0-3.fc41 | 07.02.2024 |
SB2024020715 SB2024020801 SB2024020863 and 29 more |
||
| #VU65287 - Permissions, Privileges, and Access Controls CVE-2022-29187 |
CWE-264 | Medium | 0.21.0-7.el9 | 13.07.2022 |
SB2022071347 SB2022071348 SB2022071350 and 30 more |
||
| #VU62258 - Untrusted Search Path CVE-2022-24765 |
CWE-426 | Low | 0.21.0-7.el9 | 12.04.2022 |
SB2022041262 SB2022041264 SB2022041265 and 44 more |