Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: haskellPackages.wai-make-assets

Found 2 matching suggestions

View:
Compact
Detailed
Permalink CVE-2026-2435
6.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV):
  • Attack complexity (AC):
  • Privileges required (PR):
  • User interaction (UI):
  • Scope (S):
  • Confidentiality impact (C):
  • Integrity impact (I):
  • Availability impact (A):
created 1 month, 4 weeks ago
ASSET-7706

Tanium addressed a SQL injection vulnerability in Asset.

References

Affected products

Asset
  • <1.33.269
  • <1.32.179
  • <1.36.108

Matching in nixpkgs

pkgs.assetfinder

Find domains and subdomains related to a given domain

pkgs.assetripper

Tool for extracting assets from Unity serialized files and asset bundles

pkgs.python313Packages.webassets

Media asset management for Python, with glue code for various web frameworks

  • nixos-unstable 2.0
    • nixpkgs-unstable 2.0
    • nixos-unstable-small 2.0
  • nixos-25.11 2.0
    • nixos-25.11-small 2.0
    • nixpkgs-25.11-darwin 2.0

Package maintainers

Permalink CVE-2025-15344
6.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV):
  • Attack complexity (AC):
  • Privileges required (PR):
  • User interaction (UI):
  • Scope (S):
  • Confidentiality impact (C):
  • Integrity impact (I):
  • Availability impact (A):
created 2 months, 3 weeks ago
Tanium addressed a SQL injection vulnerability in Asset.

Tanium addressed a SQL injection vulnerability in Asset.

References

Affected products

Asset
  • <1.32.161
  • <1.28.254
  • <1.33.250

Matching in nixpkgs

pkgs.taro

Daemon for the Taproot Assets protocol specification

pkgs.cassette

GTK4/Adwaita application that allows you to use Yandex Music service on Linux operating systems

pkgs.assetfinder

Find domains and subdomains related to a given domain

pkgs.assetripper

Tool for extracting assets from Unity serialized files and asset bundles

pkgs.python312Packages.webassets

Media asset management for Python, with glue code for various web frameworks

  • nixos-unstable 2.0
    • nixpkgs-unstable 2.0
    • nixos-unstable-small 2.0
  • nixos-25.11 2.0
    • nixpkgs-25.11-darwin 2.0

pkgs.python313Packages.webassets

Media asset management for Python, with glue code for various web frameworks

  • nixos-unstable 2.0
    • nixpkgs-unstable 2.0
    • nixos-unstable-small 2.0
  • nixos-25.11 2.0
    • nixpkgs-25.11-darwin 2.0

Package maintainers