CVE-2025-31638 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 1 week ago WordPress Spare <= 1.7 - Cross Site Scripting (XSS) Vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themeton Spare allows Reflected XSS. This issue affects Spare: from n/a through 1.7. Affected products spare =<1.7 Matching in nixpkgs pkgs.asciiquarium-transparent Aquarium/sea animation in ASCII art (with option of transparent background) nixos-25.05 ??? nixos-25.05-small 1.3 nixos-unstable 1.3 nixos-unstable-small 1.3 nixpkgs-unstable 1.3 pkgs.materia-theme-transparent Transparent Material Design theme for GNOME/GTK based desktop environments nixos-25.05 ??? nixos-25.05-small 0-unstable-2021-03-22 nixos-unstable 0-unstable-2021-03-22 nixos-unstable-small 0-unstable-2021-03-22 nixpkgs-unstable 0-unstable-2021-03-22 pkgs.vimPlugins.transparent-nvim nixos-unstable 2024-08-25 nixos-unstable-small 2024-08-25 nixpkgs-unstable 2024-08-25 pkgs.gnomeExtensions.transparent-top-bar Bring back the transparent top bar when free-floating in GNOME Shell 3.32. nixos-25.05 ??? nixos-25.05-small 24 nixos-unstable 23 nixos-unstable-small 23 nixpkgs-unstable 24 pkgs.vimPlugins.transparent-nvim.x86_64-linux nixos-unstable ??? nixos-unstable-small 2024-08-25 pkgs.gnomeExtensions.transparent-window-moving Makes the window semi-transparent when moving or resizing nixos-25.05 ??? nixos-25.05-small 19 nixos-unstable 18 nixos-unstable-small 18 nixpkgs-unstable 18 pkgs.vimPlugins.transparent-nvim.aarch64-linux nixos-unstable ??? nixos-unstable-small 2024-08-25 pkgs.vimPlugins.transparent-nvim.x86_64-darwin nixos-unstable ??? nixos-unstable-small 2024-08-25 pkgs.sway-contrib.inactive-windows-transparency It makes inactive sway windows transparent nixos-25.05 ??? nixos-25.05-small 0-unstable-2024-03-19 nixos-unstable 0-unstable-2024-03-19 nixos-unstable-small 0-unstable-2024-03-19 nixpkgs-unstable 0-unstable-2024-03-19 pkgs.vimPlugins.transparent-nvim.aarch64-darwin nixos-unstable ??? nixos-unstable-small 2024-08-25 pkgs.gnomeExtensions.transparent-top-bar-adjustable-transparency Fork of: https://github.com/zhanghai/gnome-shell-extension-transparent-top-bar nixos-25.05 ??? nixos-25.05-small 24 nixos-unstable 21 nixos-unstable-small 21 nixpkgs-unstable 24 Package maintainers: 4 @honnip Jung seungwoo <me@honnip.page> @quantenzitrone quantenzitrone <nix@dev.quantenzitrone.eu> @evils Evils <evils.devils@protonmail.com> @CorbinWunderlich Corbin Wunderlich <corbin@wcopy.net>
pkgs.asciiquarium-transparent Aquarium/sea animation in ASCII art (with option of transparent background) nixos-25.05 ??? nixos-25.05-small 1.3 nixos-unstable 1.3 nixos-unstable-small 1.3 nixpkgs-unstable 1.3
pkgs.materia-theme-transparent Transparent Material Design theme for GNOME/GTK based desktop environments nixos-25.05 ??? nixos-25.05-small 0-unstable-2021-03-22 nixos-unstable 0-unstable-2021-03-22 nixos-unstable-small 0-unstable-2021-03-22 nixpkgs-unstable 0-unstable-2021-03-22
pkgs.vimPlugins.transparent-nvim nixos-unstable 2024-08-25 nixos-unstable-small 2024-08-25 nixpkgs-unstable 2024-08-25
pkgs.gnomeExtensions.transparent-top-bar Bring back the transparent top bar when free-floating in GNOME Shell 3.32. nixos-25.05 ??? nixos-25.05-small 24 nixos-unstable 23 nixos-unstable-small 23 nixpkgs-unstable 24
pkgs.gnomeExtensions.transparent-window-moving Makes the window semi-transparent when moving or resizing nixos-25.05 ??? nixos-25.05-small 19 nixos-unstable 18 nixos-unstable-small 18 nixpkgs-unstable 18
pkgs.sway-contrib.inactive-windows-transparency It makes inactive sway windows transparent nixos-25.05 ??? nixos-25.05-small 0-unstable-2024-03-19 nixos-unstable 0-unstable-2024-03-19 nixos-unstable-small 0-unstable-2024-03-19 nixpkgs-unstable 0-unstable-2024-03-19
pkgs.gnomeExtensions.transparent-top-bar-adjustable-transparency Fork of: https://github.com/zhanghai/gnome-shell-extension-transparent-top-bar nixos-25.05 ??? nixos-25.05-small 24 nixos-unstable 21 nixos-unstable-small 21 nixpkgs-unstable 24
CVE-2025-39476 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 1 week ago WordPress Revo theme <= 4.0.26 - Local File Inclusion Vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in magentech Revo allows PHP Local File Inclusion. This issue affects Revo: from n/a through 4.0.26. Affected products revo =<4.0.26 Matching in nixpkgs pkgs.prevo offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 0.2 nixos-unstable 0.2 nixos-unstable-small 0.2 nixpkgs-unstable 0.2 pkgs.revolver Progress spinner for ZSH scripts nixos-25.05 ??? nixos-25.05-small 0.2.4-unstable-2020-09-30 nixos-unstable 0.2.4-unstable-2020-09-30 nixos-unstable-small 0.2.4-unstable-2020-09-30 nixpkgs-unstable 0.2.4-unstable-2020-09-30 pkgs.adminerevo Database management in a single PHP file nixos-25.05 ??? nixos-25.05-small 4.8.4 nixos-unstable 4.8.4 nixos-unstable-small 4.8.4 nixpkgs-unstable 4.8.4 pkgs.prevo-data data for offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 2020-03-08 nixos-unstable 2020-03-08 nixos-unstable-small 2020-03-08 nixpkgs-unstable 2020-03-08 pkgs.prevo-tools CLI tools for the offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 0.2 nixos-unstable 0.2 nixos-unstable-small 0.2 nixpkgs-unstable 0.2 pkgs.revolt-desktop Open source user-first chat platform nixos-25.05 ??? nixos-25.05-small 1.0.8 nixos-unstable 1.0.8 nixos-unstable-small 1.0.8 nixpkgs-unstable 1.0.8 pkgs.revolver.x86_64-linux Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30 pkgs.revolver.aarch64-linux Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30 pkgs.revolver.x86_64-darwin Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30 pkgs.revolver.aarch64-darwin Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30 pkgs.python311Packages.pyrevolve Python library to manage checkpointing for adjoints nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4 pkgs.python312Packages.pyrevolve Python library to manage checkpointing for adjoints nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4 pkgs.revolt-desktop.x86_64-linux Open source user-first chat platform nixos-unstable 1.0.6 pkgs.revolt-desktop.aarch64-linux Open source user-first chat platform nixos-unstable 1.0.6 pkgs.revolt-desktop.x86_64-darwin Open source user-first chat platform nixos-unstable 1.0.6 pkgs.revolt-desktop.aarch64-darwin Open source user-first chat platform nixos-unstable 1.0.6 pkgs.python312Packages.brevo-python Fully-featured Python API client to interact with Brevo nixos-25.05 ??? nixos-25.05-small 1.1.2 nixos-unstable 1.1.2 nixos-unstable-small 1.1.2 nixpkgs-unstable 1.1.2 pkgs.python313Packages.brevo-python Fully-featured Python API client to interact with Brevo nixos-25.05 ??? nixos-25.05-small 1.1.2 nixos-unstable 1.1.2 nixos-unstable-small 1.1.2 nixpkgs-unstable 1.1.2 Package maintainers: 8 @magistau Mg. Tau <nix@alice-carroll.pet> @heyimnova Nova Witterick <git@heyimnova.dev> @soyouzpanda soyouzpanda <soyouzpanda@soyouzpanda.fr> @shyim Soner Sayakci <s.sayakci@gmail.com> @ehmry Emery Hemingway <ehmry@posteo.net> @das-g Raphael Das Gupta <nixpkgs@raphael.dasgupta.ch> @d-brasher D. Brasher @AtilaSaraiva Átila Saraiva <atilasaraiva@gmail.com>
pkgs.prevo offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 0.2 nixos-unstable 0.2 nixos-unstable-small 0.2 nixpkgs-unstable 0.2
pkgs.revolver Progress spinner for ZSH scripts nixos-25.05 ??? nixos-25.05-small 0.2.4-unstable-2020-09-30 nixos-unstable 0.2.4-unstable-2020-09-30 nixos-unstable-small 0.2.4-unstable-2020-09-30 nixpkgs-unstable 0.2.4-unstable-2020-09-30
pkgs.adminerevo Database management in a single PHP file nixos-25.05 ??? nixos-25.05-small 4.8.4 nixos-unstable 4.8.4 nixos-unstable-small 4.8.4 nixpkgs-unstable 4.8.4
pkgs.prevo-data data for offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 2020-03-08 nixos-unstable 2020-03-08 nixos-unstable-small 2020-03-08 nixpkgs-unstable 2020-03-08
pkgs.prevo-tools CLI tools for the offline version of the Esperanto dictionary Reta Vortaro nixos-25.05 ??? nixos-25.05-small 0.2 nixos-unstable 0.2 nixos-unstable-small 0.2 nixpkgs-unstable 0.2
pkgs.revolt-desktop Open source user-first chat platform nixos-25.05 ??? nixos-25.05-small 1.0.8 nixos-unstable 1.0.8 nixos-unstable-small 1.0.8 nixpkgs-unstable 1.0.8
pkgs.revolver.aarch64-linux Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30
pkgs.revolver.x86_64-darwin Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30
pkgs.revolver.aarch64-darwin Progress spinner for ZSH scripts nixos-unstable 0.2.4-unstable-2020-09-30
pkgs.python311Packages.pyrevolve Python library to manage checkpointing for adjoints nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4
pkgs.python312Packages.pyrevolve Python library to manage checkpointing for adjoints nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4
pkgs.python312Packages.brevo-python Fully-featured Python API client to interact with Brevo nixos-25.05 ??? nixos-25.05-small 1.1.2 nixos-unstable 1.1.2 nixos-unstable-small 1.1.2 nixpkgs-unstable 1.1.2
pkgs.python313Packages.brevo-python Fully-featured Python API client to interact with Brevo nixos-25.05 ??? nixos-25.05-small 1.1.2 nixos-unstable 1.1.2 nixos-unstable-small 1.1.2 nixpkgs-unstable 1.1.2
CVE-2025-28945 8.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 1 week ago WordPress Valen - Sport, Fashion WooCommerce WordPress Theme <= 2.4 - Local File Inclusion Vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Valen - Sport, Fashion WooCommerce WordPress Theme allows PHP Local File Inclusion. This issue affects Valen - Sport, Fashion WooCommerce WordPress Theme: from n/a through 2.4. Affected products valen =<2.4 Matching in nixpkgs pkgs.valent Implementation of the KDE Connect protocol, built on GNOME platform libraries nixos-25.05 ??? nixos-25.05-small 1.0.0.alpha.46-unstable-2024-10-26 nixos-unstable 1.0.0.alpha.46-unstable-2024-10-26 nixos-unstable-small 1.0.0.alpha.46-unstable-2024-10-26 nixpkgs-unstable 1.0.0.alpha.46-unstable-2024-10-26 pkgs.valentina Open source sewing pattern drafting software nixos-25.05 ??? nixos-25.05-small 0.7.53 nixos-unstable 0.7.52 nixos-unstable-small 0.7.53 nixpkgs-unstable 0.7.52 pkgs.gnomeExtensions.valent GNOME Shell integration for Valent nixos-25.05 ??? nixos-25.05-small 1.0.0.alpha.47 nixos-unstable 2023-11-10 nixos-unstable-small 2023-11-10 nixpkgs-unstable 1.0.0.alpha.47 pkgs.sbclPackages.cl-prevalence nixos-25.05 ??? nixos-25.05-small 20230214-git nixos-unstable 20230214-git nixos-unstable-small 20230214-git nixpkgs-unstable 20230214-git pkgs.haskellPackages.equivalence Maintaining an equivalence relation implemented as union-find using STT nixos-25.05 ??? nixos-25.05-small 0.4.1 nixos-unstable 0.4.1 nixos-unstable-small 0.4.1 nixpkgs-unstable 0.4.1 pkgs.vscode-extensions.valentjn.vscode-ltex nixos-25.05 ??? nixos-25.05-small 13.1.0 nixos-unstable 13.1.0 nixos-unstable-small 13.1.0 nixpkgs-unstable 13.1.0 pkgs.sbclPackages.cl-prevalence.x86_64-linux nixos-unstable 20230214-git pkgs.haskellPackages.equivalence.x86_64-linux Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1 pkgs.sbclPackages.cl-prevalence.aarch64-linux nixos-unstable 20230214-git pkgs.sbclPackages.cl-prevalence.x86_64-darwin nixos-unstable 20230214-git pkgs.haskellPackages.equivalence.aarch64-linux Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1 pkgs.haskellPackages.equivalence.x86_64-darwin Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1 pkgs.sbclPackages.cl-prevalence.aarch64-darwin nixos-unstable 20230214-git pkgs.haskellPackages.equivalence.aarch64-darwin Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1 pkgs.vscode-extensions.valentjn.vscode-ltex.x86_64-linux nixos-unstable ??? nixos-unstable-small 13.1.0 pkgs.vscode-extensions.valentjn.vscode-ltex.aarch64-linux nixos-unstable ??? nixos-unstable-small 13.1.0 pkgs.vscode-extensions.valentjn.vscode-ltex.x86_64-darwin nixos-unstable ??? nixos-unstable-small 13.1.0 pkgs.vscode-extensions.valentjn.vscode-ltex.aarch64-darwin nixos-unstable ??? nixos-unstable-small 13.1.0 Package maintainers: 7 @Aleksanaa Aleksana QwQ <me@aleksana.moe> @0xbe7a Bela Stoyan <nix@be7a.de> @lukego Luke Gorrie <luke@snabb.co> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @hraban Hraban Luyat <hraban@0brg.net> @Uthar Kasper Gałkowski <galkowskikasper@gmail.com> @nagy Daniel Nagy <danielnagy@posteo.de>
pkgs.valent Implementation of the KDE Connect protocol, built on GNOME platform libraries nixos-25.05 ??? nixos-25.05-small 1.0.0.alpha.46-unstable-2024-10-26 nixos-unstable 1.0.0.alpha.46-unstable-2024-10-26 nixos-unstable-small 1.0.0.alpha.46-unstable-2024-10-26 nixpkgs-unstable 1.0.0.alpha.46-unstable-2024-10-26
pkgs.valentina Open source sewing pattern drafting software nixos-25.05 ??? nixos-25.05-small 0.7.53 nixos-unstable 0.7.52 nixos-unstable-small 0.7.53 nixpkgs-unstable 0.7.52
pkgs.gnomeExtensions.valent GNOME Shell integration for Valent nixos-25.05 ??? nixos-25.05-small 1.0.0.alpha.47 nixos-unstable 2023-11-10 nixos-unstable-small 2023-11-10 nixpkgs-unstable 1.0.0.alpha.47
pkgs.sbclPackages.cl-prevalence nixos-25.05 ??? nixos-25.05-small 20230214-git nixos-unstable 20230214-git nixos-unstable-small 20230214-git nixpkgs-unstable 20230214-git
pkgs.haskellPackages.equivalence Maintaining an equivalence relation implemented as union-find using STT nixos-25.05 ??? nixos-25.05-small 0.4.1 nixos-unstable 0.4.1 nixos-unstable-small 0.4.1 nixpkgs-unstable 0.4.1
pkgs.vscode-extensions.valentjn.vscode-ltex nixos-25.05 ??? nixos-25.05-small 13.1.0 nixos-unstable 13.1.0 nixos-unstable-small 13.1.0 nixpkgs-unstable 13.1.0
pkgs.haskellPackages.equivalence.x86_64-linux Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1
pkgs.haskellPackages.equivalence.aarch64-linux Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1
pkgs.haskellPackages.equivalence.x86_64-darwin Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1
pkgs.haskellPackages.equivalence.aarch64-darwin Maintaining an equivalence relation implemented as union-find using STT nixos-unstable ??? nixpkgs-unstable 0.4.1
pkgs.vscode-extensions.valentjn.vscode-ltex.x86_64-linux nixos-unstable ??? nixos-unstable-small 13.1.0
pkgs.vscode-extensions.valentjn.vscode-ltex.aarch64-linux nixos-unstable ??? nixos-unstable-small 13.1.0
pkgs.vscode-extensions.valentjn.vscode-ltex.x86_64-darwin nixos-unstable ??? nixos-unstable-small 13.1.0
pkgs.vscode-extensions.valentjn.vscode-ltex.aarch64-darwin nixos-unstable ??? nixos-unstable-small 13.1.0
CVE-2025-31396 9.8 CRITICAL CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 1 week ago WordPress FLAP - Business WordPress Theme <= 1.5 - PHP Object Injection Vulnerability Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme allows Object Injection. This issue affects FLAP - Business WordPress Theme: from n/a through 1.5. Affected products flap =<1.5 Matching in nixpkgs pkgs.jflap GUI tool for experimenting with formal languages topics nixos-25.05 ??? nixos-25.05-small 7.1 nixos-unstable 7.1 nixos-unstable-small 7.1 nixpkgs-unstable 7.1 pkgs.emacsPackages.flappymacs nixos-unstable 20171023.1004 nixos-unstable-small 20171023.1004 nixpkgs-unstable 20171023.1004 Package maintainers: 2 @grnnja Prem Netsuwan <grnnja@gmail.com> @yuuyins Yuu Yin <yuunix@grrlz.net>
pkgs.jflap GUI tool for experimenting with formal languages topics nixos-25.05 ??? nixos-25.05-small 7.1 nixos-unstable 7.1 nixos-unstable-small 7.1 nixpkgs-unstable 7.1
pkgs.emacsPackages.flappymacs nixos-unstable 20171023.1004 nixos-unstable-small 20171023.1004 nixpkgs-unstable 20171023.1004
CVE-2025-5917 2.8 LOW CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 1 week ago Libarchive: off by one error in build_ustar_entry_name() at archive_write_set_format_pax.c A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes for file names. This can lead to a 1-byte write overflow. While seemingly small, such an overflow can corrupt adjacent memory, leading to unpredictable program behavior, crashes, or in specific circumstances, could be leveraged as a building block for more sophisticated exploitation. Affected products rhcos libarchive <3.8.0 Matching in nixpkgs pkgs.libarchive Multi-format archive and compression library nixos-25.05 ??? nixos-25.05-small 3.7.8 nixos-unstable 3.7.7 nixos-unstable-small 3.7.7 nixpkgs-unstable 3.7.7 pkgs.libarchive-qt Qt based archiving solution with libarchive backend nixos-25.05 ??? nixos-25.05-small 2.0.8 nixos-unstable 2.0.8 nixos-unstable-small 2.0.8 nixpkgs-unstable 2.0.8 pkgs.haskellPackages.libarchive Haskell interface to libarchive nixos-25.05 ??? nixos-25.05-small 3.0.4.2 nixos-unstable 3.0.4.2 nixos-unstable-small 3.0.4.2 nixpkgs-unstable 3.0.4.2 pkgs.kodiPackages.vfs-libarchive LibArchive Virtual Filesystem add-on for Kodi nixos-25.05 ??? nixos-25.05-small 20.1.0 nixos-unstable 20.1.0 nixos-unstable-small 20.1.0 nixpkgs-unstable 20.1.0 pkgs.python311Packages.libarchive-c Python interface to libarchive nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.python312Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.python313Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.haskellPackages.archive-libarchive Common interface using libarchive nixos-25.05 ??? nixos-25.05-small 1.0.0.1 nixos-unstable 1.0.0.1 nixos-unstable-small 1.0.0.1 nixpkgs-unstable 1.0.0.1 pkgs.haskellPackages.libarchive-conduit Read many archive formats with libarchive and conduit nixos-25.05 ??? nixos-25.05-small 0.1.0.0 nixos-unstable 0.1.0.0 nixos-unstable-small 0.1.0.0 nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive.x86_64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.haskellPackages.libarchive.aarch64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.haskellPackages.libarchive.x86_64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.python311Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.python312Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.python313Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.haskellPackages.libarchive.aarch64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.python312Packages.libarchive-c.x86_64-linux Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.aarch64-linux Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.x86_64-darwin Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.aarch64-darwin Python interface to libarchive nixos-unstable 5.1 pkgs.haskellPackages.libarchive-conduit.x86_64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.aarch64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.x86_64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.aarch64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 Package maintainers: 10 @aanderse Aaron Andersen <aaron@fosslib.net> @minijackson Rémi Nicole <minijackson@riseup.net> @peterhoeg Peter Hoeg <peter@hoeg.com> @dschrempf Dominik Schrempf <dominik.schrempf@gmail.com> @cpages Carles Pagès <page@ruiec.cat> @nvmd Sergey Kazenyuk <kazenyuk@pm.me> @edwtjo Edward Tjörnhammar <ed@cflags.cc> @sephalon Stefan Wiehler <me@sephalon.net> @jcumming Jack Cummings <jack@mudshark.org> @dan4ik605743 Danil Danevich <6057430gu@gmail.com>
pkgs.libarchive Multi-format archive and compression library nixos-25.05 ??? nixos-25.05-small 3.7.8 nixos-unstable 3.7.7 nixos-unstable-small 3.7.7 nixpkgs-unstable 3.7.7
pkgs.libarchive-qt Qt based archiving solution with libarchive backend nixos-25.05 ??? nixos-25.05-small 2.0.8 nixos-unstable 2.0.8 nixos-unstable-small 2.0.8 nixpkgs-unstable 2.0.8
pkgs.haskellPackages.libarchive Haskell interface to libarchive nixos-25.05 ??? nixos-25.05-small 3.0.4.2 nixos-unstable 3.0.4.2 nixos-unstable-small 3.0.4.2 nixpkgs-unstable 3.0.4.2
pkgs.kodiPackages.vfs-libarchive LibArchive Virtual Filesystem add-on for Kodi nixos-25.05 ??? nixos-25.05-small 20.1.0 nixos-unstable 20.1.0 nixos-unstable-small 20.1.0 nixpkgs-unstable 20.1.0
pkgs.python311Packages.libarchive-c Python interface to libarchive nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.python312Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.python313Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.haskellPackages.archive-libarchive Common interface using libarchive nixos-25.05 ??? nixos-25.05-small 1.0.0.1 nixos-unstable 1.0.0.1 nixos-unstable-small 1.0.0.1 nixpkgs-unstable 1.0.0.1
pkgs.haskellPackages.libarchive-conduit Read many archive formats with libarchive and conduit nixos-25.05 ??? nixos-25.05-small 0.1.0.0 nixos-unstable 0.1.0.0 nixos-unstable-small 0.1.0.0 nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive.x86_64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive.aarch64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive.x86_64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.python311Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.python312Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.python313Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.haskellPackages.libarchive.aarch64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive-conduit.x86_64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.aarch64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.x86_64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.aarch64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
CVE-2025-32291 10.0 CRITICAL CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 1 week ago WordPress SUMO Affiliates Pro <= 10.7.0 - Arbitrary File Upload Vulnerability Unrestricted Upload of File with Dangerous Type vulnerability in FantasticPlugins SUMO Affiliates Pro allows Using Malicious Files. This issue affects SUMO Affiliates Pro: from n/a through 10.7.0. Affected products affs =<10.7.0 Matching in nixpkgs pkgs.unyaffs Tool to extract files from a YAFFS2 file system image nixos-25.05 ??? nixos-25.05-small 0.9 nixos-unstable 0.9 nixos-unstable-small 0.9 nixpkgs-unstable 0.9 pkgs.yaffshiv Simple YAFFS file system parser and extractor nixos-25.05 ??? nixos-25.05-small 0-unstable-2024-08-30 nixos-unstable 0-unstable-2024-08-30 nixos-unstable-small 0-unstable-2024-08-30 nixpkgs-unstable 0-unstable-2024-08-30 Package maintainers: 2 @KSJ2000 KSJ2000 <katsho123@outlook.com> @stigtsp Stig Palmquist <stig@stig.io>
pkgs.unyaffs Tool to extract files from a YAFFS2 file system image nixos-25.05 ??? nixos-25.05-small 0.9 nixos-unstable 0.9 nixos-unstable-small 0.9 nixpkgs-unstable 0.9
pkgs.yaffshiv Simple YAFFS file system parser and extractor nixos-25.05 ??? nixos-25.05-small 0-unstable-2024-08-30 nixos-unstable 0-unstable-2024-08-30 nixos-unstable-small 0-unstable-2024-08-30 nixpkgs-unstable 0-unstable-2024-08-30
CVE-2025-47711 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 1 week ago Nbdkit: nbdkit-server: off-by-one error when processing block status may lead to a denial of service There's a flaw in the nbdkit server when handling responses from its plugins regarding the status of data blocks. If a client makes a specific request for a very large data range, and a plugin responds with an even larger single block, the nbdkit server can encounter a critical internal error, leading to a denial-of-service. Affected products nbdkit <1.42.3 <1.40.6 <1.38.6 virt:av/nbdkit virt:8.2/nbdkit virt:rhel/nbdkit Matching in nixpkgs pkgs.nbdkit NBD server with stable plugin ABI and permissive license nixos-25.05 ??? nixos-25.05-small 1.42.1 nixos-unstable 1.40.4 nixos-unstable-small 1.42.1 nixpkgs-unstable 1.42.1 Package maintainers: 1 @lukts30 lukts30 <llukas21307@gmail.com>
pkgs.nbdkit NBD server with stable plugin ABI and permissive license nixos-25.05 ??? nixos-25.05-small 1.42.1 nixos-unstable 1.40.4 nixos-unstable-small 1.42.1 nixpkgs-unstable 1.42.1
CVE-2025-5916 3.9 LOW CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 1 week ago Libarchive: integer overflow while reading warc files at archive_read_support_format_warc.c A vulnerability has been identified in the libarchive library. This flaw involves an integer overflow that can be triggered when processing a Web Archive (WARC) file that claims to have more than INT64_MAX - 4 content bytes. An attacker could craft a malicious WARC archive to induce this overflow, potentially leading to unpredictable program behavior, memory corruption, or a denial-of-service condition within applications that process such archives using libarchive. Affected products rhcos libarchive <3.8.0 Matching in nixpkgs pkgs.libarchive Multi-format archive and compression library nixos-25.05 ??? nixos-25.05-small 3.7.8 nixos-unstable 3.7.7 nixos-unstable-small 3.7.7 nixpkgs-unstable 3.7.7 pkgs.libarchive-qt Qt based archiving solution with libarchive backend nixos-25.05 ??? nixos-25.05-small 2.0.8 nixos-unstable 2.0.8 nixos-unstable-small 2.0.8 nixpkgs-unstable 2.0.8 pkgs.haskellPackages.libarchive Haskell interface to libarchive nixos-25.05 ??? nixos-25.05-small 3.0.4.2 nixos-unstable 3.0.4.2 nixos-unstable-small 3.0.4.2 nixpkgs-unstable 3.0.4.2 pkgs.kodiPackages.vfs-libarchive LibArchive Virtual Filesystem add-on for Kodi nixos-25.05 ??? nixos-25.05-small 20.1.0 nixos-unstable 20.1.0 nixos-unstable-small 20.1.0 nixpkgs-unstable 20.1.0 pkgs.python311Packages.libarchive-c Python interface to libarchive nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.python312Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.python313Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1 pkgs.haskellPackages.archive-libarchive Common interface using libarchive nixos-25.05 ??? nixos-25.05-small 1.0.0.1 nixos-unstable 1.0.0.1 nixos-unstable-small 1.0.0.1 nixpkgs-unstable 1.0.0.1 pkgs.haskellPackages.libarchive-conduit Read many archive formats with libarchive and conduit nixos-25.05 ??? nixos-25.05-small 0.1.0.0 nixos-unstable 0.1.0.0 nixos-unstable-small 0.1.0.0 nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive.x86_64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.haskellPackages.libarchive.aarch64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.haskellPackages.libarchive.x86_64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.python311Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.python312Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.python313Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31 pkgs.haskellPackages.libarchive.aarch64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2 pkgs.python312Packages.libarchive-c.x86_64-linux Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.aarch64-linux Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.x86_64-darwin Python interface to libarchive nixos-unstable 5.1 pkgs.python312Packages.libarchive-c.aarch64-darwin Python interface to libarchive nixos-unstable 5.1 pkgs.haskellPackages.libarchive-conduit.x86_64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.aarch64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.x86_64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 pkgs.haskellPackages.libarchive-conduit.aarch64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0 Package maintainers: 10 @aanderse Aaron Andersen <aaron@fosslib.net> @minijackson Rémi Nicole <minijackson@riseup.net> @peterhoeg Peter Hoeg <peter@hoeg.com> @dschrempf Dominik Schrempf <dominik.schrempf@gmail.com> @cpages Carles Pagès <page@ruiec.cat> @nvmd Sergey Kazenyuk <kazenyuk@pm.me> @edwtjo Edward Tjörnhammar <ed@cflags.cc> @sephalon Stefan Wiehler <me@sephalon.net> @jcumming Jack Cummings <jack@mudshark.org> @dan4ik605743 Danil Danevich <6057430gu@gmail.com>
pkgs.libarchive Multi-format archive and compression library nixos-25.05 ??? nixos-25.05-small 3.7.8 nixos-unstable 3.7.7 nixos-unstable-small 3.7.7 nixpkgs-unstable 3.7.7
pkgs.libarchive-qt Qt based archiving solution with libarchive backend nixos-25.05 ??? nixos-25.05-small 2.0.8 nixos-unstable 2.0.8 nixos-unstable-small 2.0.8 nixpkgs-unstable 2.0.8
pkgs.haskellPackages.libarchive Haskell interface to libarchive nixos-25.05 ??? nixos-25.05-small 3.0.4.2 nixos-unstable 3.0.4.2 nixos-unstable-small 3.0.4.2 nixpkgs-unstable 3.0.4.2
pkgs.kodiPackages.vfs-libarchive LibArchive Virtual Filesystem add-on for Kodi nixos-25.05 ??? nixos-25.05-small 20.1.0 nixos-unstable 20.1.0 nixos-unstable-small 20.1.0 nixpkgs-unstable 20.1.0
pkgs.python311Packages.libarchive-c Python interface to libarchive nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.python312Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.python313Packages.libarchive-c Python interface to libarchive nixos-25.05 ??? nixos-25.05-small 5.1 nixos-unstable 5.1 nixos-unstable-small 5.1 nixpkgs-unstable 5.1
pkgs.haskellPackages.archive-libarchive Common interface using libarchive nixos-25.05 ??? nixos-25.05-small 1.0.0.1 nixos-unstable 1.0.0.1 nixos-unstable-small 1.0.0.1 nixpkgs-unstable 1.0.0.1
pkgs.haskellPackages.libarchive-conduit Read many archive formats with libarchive and conduit nixos-25.05 ??? nixos-25.05-small 0.1.0.0 nixos-unstable 0.1.0.0 nixos-unstable-small 0.1.0.0 nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive.x86_64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive.aarch64-linux Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive.x86_64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.python311Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.python312Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.python313Packages.extractcode-libarchive ScanCode Toolkit plugin to provide pre-built binary libraries and utilities and their locations nixos-25.05 ??? nixos-25.05-small 21.5.31 nixos-unstable 21.5.31 nixos-unstable-small 21.5.31 nixpkgs-unstable 21.5.31
pkgs.haskellPackages.libarchive.aarch64-darwin Haskell interface to libarchive nixos-unstable ??? nixpkgs-unstable 3.0.4.2
pkgs.haskellPackages.libarchive-conduit.x86_64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.aarch64-linux Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.x86_64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
pkgs.haskellPackages.libarchive-conduit.aarch64-darwin Read many archive formats with libarchive and conduit nixos-unstable ??? nixpkgs-unstable 0.1.0.0
CVE-2025-31061 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 1 week ago WordPress Wishlist plugin <= 2.1.0 - Reflected Cross Site Scripting (XSS) vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in redqteam Wishlist allows Reflected XSS. This issue affects Wishlist: from n/a through 2.1.0. Affected products wishlist =<2.1.0 Matching in nixpkgs pkgs.wishlist Single entrypoint for multiple SSH endpoints nixos-25.05 ??? nixos-25.05-small 0.15.1 nixos-unstable 0.15.1 nixos-unstable-small 0.15.0 nixpkgs-unstable 0.15.1 Package maintainers: 2 @caarlos0 Carlos A Becker <carlos@becker.software> @penguwin Nicolas Martin <penguwin@penguwin.eu>
pkgs.wishlist Single entrypoint for multiple SSH endpoints nixos-25.05 ??? nixos-25.05-small 0.15.1 nixos-unstable 0.15.1 nixos-unstable-small 0.15.0 nixpkgs-unstable 0.15.1
CVE-2025-47712 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 1 week ago CISA ADP Vulnrichment None Affected products nbdkit <1.42.3 <1.40.6 <1.38.6 virt:av/nbdkit virt:8.2/nbdkit virt:rhel/nbdkit Matching in nixpkgs pkgs.nbdkit NBD server with stable plugin ABI and permissive license nixos-25.05 ??? nixos-25.05-small 1.42.1 nixos-unstable 1.40.4 nixos-unstable-small 1.42.1 nixpkgs-unstable 1.42.1 Package maintainers: 1 @lukts30 lukts30 <llukas21307@gmail.com>
pkgs.nbdkit NBD server with stable plugin ABI and permissive license nixos-25.05 ??? nixos-25.05-small 1.42.1 nixos-unstable 1.40.4 nixos-unstable-small 1.42.1 nixpkgs-unstable 1.42.1