Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Dismissed suggestions

These automatic suggestions were dismissed after initial triaging.

to select a suggestion for revision.

View:
Compact
Detailed
Dismissed
(no matching packages found)
Permalink CVE-2026-20215
7.5 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): None (N)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): High (H)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability

A vulnerability in the 7z file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition, or possibly other expanded impacts, resulting from memory corruption on an affected device. This vulnerability is due to improper boundary checks for content in 7z files during scanning, which may result in an out-of-bounds buffer write. An attacker could exploit this vulnerability by submitting a crafted file that contains 7z content to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.

Affected products

Cisco Secure Endpoint
  • ==6.3.3
  • ==7.3.9
  • ==8.4.5.30483
  • ==7.4.1.20425
  • ==7.5.19
  • ==1.12.5
  • ==1.24.0
  • ==7.5.1.20833
  • ==1.7.0
  • ==7.5.3
  • ==7.1.5
  • ==1.26.1
  • ==7.2.13
  • ==1.12.0
  • ==1.21.0
  • ==1.10.1
  • ==1.15.2
  • ==1.20.0
  • ==1.8.1
  • ==7.5.15.21611
  • ==1.22.4
  • ==7.4.1.20439
  • ==8.4.2.30317
  • ==1.17.2
  • ==7.5.21.21732
  • ==1.10.2
  • ==1.14.0
  • ==1.13.2
  • ==1.11.0
  • ==7.3.13
  • ==1.22.2
  • ==6.0.9
  • ==7.2.5
  • ==7.5.5
  • ==8.4.1.30307
  • ==1.16.3
  • ==6.2.1
  • ==8.1.5.21322
  • ==8.4.4.30467
  • ==1.12.1
  • ==1.21.2
  • ==8.4.4.30419
  • ==7.5.7
  • ==8.1.5
  • ==1.15.1
  • ==1.27.2
  • ==7.4.1
  • ==1.20.7
  • ==1.17.1
  • ==7.5.20
  • ==1.15.5
  • ==8.1.7.21585
  • ==8.4.0
  • ==1.27.1
  • ==1.25.0
  • ==1.17.0
  • ==6.3.7
  • ==6.3.5
  • ==7.5.17.21680
  • ==1.26.0
  • ==1.23.0
  • ==7.5.1.20813
  • ==1.12.7
  • ==1.20.3
  • ==1.8.4
  • ==6.1.5
  • ==7.4.5
  • ==7.0.5
  • ==7.3.3
  • ==1.22.0
  • ==1.18.1
  • ==1.6.0
  • ==1.15.6
  • ==7.4.3.20679
  • ==8.0.1.21160
  • ==1.16.2
  • ==6.2.3
  • ==8.1.7.21417
  • ==1.14.1
  • ==1.21.3
  • ==8.1.3.21242
  • ==1.22.1
  • ==1.25.2
  • ==7.2.11
  • ==7.5.13.21586
  • ==1.22.3
  • ==8.2.1.21612
  • ==8.0.1.21164
  • ==1.15.0
  • ==6.2.9
  • ==1.24.5
  • ==6.3.1
  • ==1.19.0
  • ==1.12.4
  • ==6.2.5
  • ==1.16.1
  • ==7.3.15
  • ==1.12.6
  • ==7.5.11
  • ==8.1.7
  • ==7.3.5
  • ==8.1.3
  • ==1.12.3
  • ==1.20.6
  • ==1.13.1
  • ==1.9.1
  • ==6.1.9
  • ==1.20.4
  • ==8.2.3.30119
  • ==1.20.2
  • ==8.4.3
  • ==7.1.1
  • ==6.1.7
  • ==7.2.7
  • ==8.1.7.21512
  • ==1.20.1
  • ==7.5.9
  • ==7.5.13.21598
  • ==8.2.4.30130
  • ==1.25.1
  • ==1.8.0
  • ==1.9.0
  • ==7.2.3
  • ==1.21.1
  • ==1.24.2
  • ==1.15.3
  • ==1.23.1
  • ==1.11.1
  • ==1.27.0
  • ==8.2.1.21650
  • ==7.4.3
  • ==1.16.0
  • ==1.12.2
  • ==6.2.19
  • ==1.20.5
  • ==1.18.0
  • ==1.24.1
  • ==1.13.0
  • ==6.0.7
  • ==1.15.4
  • ==8.4.1.30298
  • ==1.24.4
  • ==1.24.3
  • ==7.3.1
  • ==1.20.8
  • ==1.10.0
Dismissed
(max. allowed matches exceeded)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (max. allowed matches exceeded) suggestion
riscv/ptrace: Use USER_REGSET_NOTE_TYPE for REGSET_CFI

In the Linux kernel, the following vulnerability has been resolved: riscv/ptrace: Use USER_REGSET_NOTE_TYPE for REGSET_CFI Fixes a warning while dumping core: [54983.546369][ C7] WARNING: [!note_name] fs/binfmt_elf.c:1771 at elf_core_dump+0x910/0xf68, CPU#7: abort01/31982

Affected products

Linux
  • <e3573f739e3dadab57ec80488d07e05c8f6e82d3
  • =<*
  • ==7.0
  • <08200bef0983ffed039ab399df0cba8d900ce5fc
  • <7.0
  • =<7.0.*
Dismissed
(no matching packages found)
Permalink CVE-2026-11988
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
LearnPress <= 4.3.9.1 - Insecure Direct Object Reference to Authenticated (Subscriber+) Sensitive Information Disclosure via 'userId' Parameter

The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.3.9.1 via the 'userId' parameter due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with subscriber-level access and above, to view the course enrollment progress and completion data belonging to any instructor or administrator account on the site. This IDOR does not apply when the target user is a regular subscriber, as the guard correctly blocks cross-subscriber access; exploitation is limited to cases where the victim user holds the LP_TEACHER_ROLE or administrator role.

Affected products

LearnPress – WordPress LMS Plugin for Create and Sell Online Courses
  • =<4.3.9.1
Dismissed
(no matching packages found)
Permalink CVE-2026-20244
7.5 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): None (N)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): High (H)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
ClamAV DMG File Processing Denial of Service Vulnerability

A vulnerability in the DMG file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition, or possibly other expanded impacts, resulting from memory corruption on an affected device. This vulnerability is due to improper boundary checks for content in DMG files during scanning, which may result in an integer overflow on 32-bit platforms only. An attacker could exploit this vulnerability by submitting a crafted file that contains DMG content to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.

Affected products

Cisco Secure Endpoint
  • ==6.3.3
  • ==7.3.9
  • ==8.4.5.30483
  • ==7.4.1.20425
  • ==7.5.19
  • ==1.12.5
  • ==1.24.0
  • ==7.5.1.20833
  • ==1.7.0
  • ==7.5.3
  • ==7.1.5
  • ==1.26.1
  • ==7.2.13
  • ==1.12.0
  • ==1.21.0
  • ==1.10.1
  • ==1.15.2
  • ==1.20.0
  • ==1.8.1
  • ==7.5.15.21611
  • ==1.22.4
  • ==7.4.1.20439
  • ==8.4.2.30317
  • ==1.17.2
  • ==7.5.21.21732
  • ==1.10.2
  • ==1.14.0
  • ==1.13.2
  • ==1.11.0
  • ==7.3.13
  • ==1.22.2
  • ==6.0.9
  • ==7.2.5
  • ==7.5.5
  • ==8.4.1.30307
  • ==1.16.3
  • ==6.2.1
  • ==8.1.5.21322
  • ==8.4.4.30467
  • ==1.12.1
  • ==1.21.2
  • ==8.4.4.30419
  • ==7.5.7
  • ==8.1.5
  • ==1.15.1
  • ==1.27.2
  • ==7.4.1
  • ==1.20.7
  • ==1.17.1
  • ==7.5.20
  • ==1.15.5
  • ==8.1.7.21585
  • ==8.4.0
  • ==1.27.1
  • ==1.25.0
  • ==1.17.0
  • ==6.3.7
  • ==6.3.5
  • ==7.5.17.21680
  • ==1.26.0
  • ==1.23.0
  • ==7.5.1.20813
  • ==1.12.7
  • ==1.20.3
  • ==1.8.4
  • ==6.1.5
  • ==7.4.5
  • ==7.0.5
  • ==7.3.3
  • ==1.22.0
  • ==1.18.1
  • ==1.6.0
  • ==1.15.6
  • ==7.4.3.20679
  • ==8.0.1.21160
  • ==1.16.2
  • ==6.2.3
  • ==8.1.7.21417
  • ==1.14.1
  • ==1.21.3
  • ==8.1.3.21242
  • ==1.22.1
  • ==1.25.2
  • ==7.2.11
  • ==7.5.13.21586
  • ==1.22.3
  • ==8.2.1.21612
  • ==8.0.1.21164
  • ==1.15.0
  • ==6.2.9
  • ==1.24.5
  • ==6.3.1
  • ==1.19.0
  • ==1.12.4
  • ==6.2.5
  • ==1.16.1
  • ==7.3.15
  • ==1.12.6
  • ==7.5.11
  • ==8.1.7
  • ==7.3.5
  • ==8.1.3
  • ==1.12.3
  • ==1.20.6
  • ==1.13.1
  • ==1.9.1
  • ==6.1.9
  • ==1.20.4
  • ==8.2.3.30119
  • ==1.20.2
  • ==8.4.3
  • ==7.1.1
  • ==6.1.7
  • ==7.2.7
  • ==8.1.7.21512
  • ==1.20.1
  • ==7.5.9
  • ==7.5.13.21598
  • ==8.2.4.30130
  • ==1.25.1
  • ==1.8.0
  • ==1.9.0
  • ==7.2.3
  • ==1.21.1
  • ==1.24.2
  • ==1.15.3
  • ==1.23.1
  • ==1.11.1
  • ==1.27.0
  • ==8.2.1.21650
  • ==7.4.3
  • ==1.16.0
  • ==1.12.2
  • ==6.2.19
  • ==1.20.5
  • ==1.18.0
  • ==1.24.1
  • ==1.13.0
  • ==6.0.7
  • ==1.15.4
  • ==8.4.1.30298
  • ==1.24.4
  • ==1.24.3
  • ==7.3.1
  • ==1.20.8
  • ==1.10.0
Dismissed
(no matching packages found)
Permalink CVE-2026-20460
5.3 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Adjacent (A)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Adjacent (A)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
In Modem, there is a possible information disclosure due to …

In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01811421; Issue ID: MSV-6788.

Affected products

MediaTek chipset
  • ==MT6991
  • ==MT6896
  • ==MT8791T
  • ==MT8873
  • ==MT6885
  • ==MT8768
  • ==MT2737
  • ==MT8796
  • ==MT8795T
  • ==MT6789
  • ==MT8797
  • ==MT8781
  • ==MT6877
  • ==MT6878
  • ==MT6889
  • ==MT8883
  • ==MT6875
  • ==MT2735
  • ==MT8786
  • ==MT6813
  • ==MT6899
  • ==MT6985
  • ==MT6983
  • ==MT8765
  • ==MT8791
  • ==MT8755
  • ==MT6785
  • ==MT8789
  • ==MT6988
  • ==MT8792
  • ==MT6781
  • ==MT6883
  • ==MT6980
  • ==MT8788
  • ==MT6855
  • ==MT8675
  • ==MT8798
  • ==MT6779
  • ==MT6880
  • ==MT6989
  • ==MT8775
  • ==MT8793
  • ==MT8766
  • ==MT6873
  • ==MT6993
  • ==MT6890
  • ==MT6879
  • ==MT6990
  • ==MT6886
  • ==MT8766R
  • ==MT8771
  • ==MT6783
  • ==MT8676
  • ==MT6891
  • ==MT8863
  • ==MT6986D
  • ==MT8673
  • ==MT6858
  • ==MT6895
  • ==MT6897
  • ==MT6853
  • ==MT8893
  • ==MT6835
  • ==MT6833
  • ==MT6893
  • ==MT8788E
  • ==MT8678
Dismissed
(no matching packages found)
Permalink CVE-2026-11387
9.8 CRITICAL
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
SMS Alert <= 3.9.5 - Unauthenticated Privilege Escalation via Arbitrary Password Reset

The SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.9.5. This is due to the plugin not properly validating a user's identity prior to updating their details like reset the password of any user account, including administrators, and gain full access to those accounts. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account. This is only vulnerable on sites with OTP verification for password resets enabled, and where the administrator (or other user) has set a phone number for OTP verification.

Affected products

SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery
  • =<3.9.5
Dismissed
(no matching packages found)
Permalink CVE-2026-24243
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): Required (R)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
NVIDIA Megatron Bridge for Linux contains a vulnerability where an …

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

Affected products

Megatron-Bridge
  • ==Versions 0.0 to 0.4.0
Dismissed
(no matching packages found)
Permalink CVE-2026-11887
4.3 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): Low (L)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): Low (L)
  • Modified Availability (MA): None (N)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
Salon Booking System < 10.30.20 - Subscriber+ Booking Approval Bypass

The Salon Booking System WordPress plugin before 10.30.20 does not have proper authorisation checks on one of its AJAX actions, allowing any authenticated user, such as a subscriber, to modify a Salon Booking System WordPress plugin before 10.30.20 setting and bypass the manual approval of new bookings.

References

Affected products

Salon Booking System
  • <10.30.20
Dismissed
(no matching packages found)
Permalink CVE-2026-20457
5.3 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Adjacent (A)
  • Attack Complexity (AC): High (H)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): None (N)
  • Integrity (I): None (N)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Adjacent (A)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): None (N)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): High (H)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (no matching packages found) suggestion
In Modem, there is a possible system crash due to …

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01826924; Issue ID: MSV-7301.

Affected products

MediaTek chipset
  • ==MT8667
  • ==MT6896
  • ==MT6761
  • ==MT8791T
  • ==MT6885
  • ==MT2737
  • ==MT6877
  • ==MT6789
  • ==MT8768
  • ==MT6763
  • ==MT8795T
  • ==MT8781
  • ==MT8796
  • ==MT8797
  • ==MT6889
  • ==MT6875
  • ==MT2735
  • ==MT8786
  • ==MT6739
  • ==MT6985
  • ==MT8765
  • ==MT6983
  • ==MT8791
  • ==MT6785
  • ==MT8789
  • ==MT6781
  • ==MT6883
  • ==MT6768
  • ==MT6880
  • ==MT6855
  • ==MT6779
  • ==MT6980
  • ==MT8675
  • ==MT8788
  • ==MT6989
  • ==MT8798
  • ==MT8766
  • ==MT6873
  • ==MT6762
  • ==MT6890
  • ==MT6879
  • ==MT6990
  • ==MT6886
  • ==MT8766R
  • ==MT8771
  • ==MT6783
  • ==MT6891
  • ==MT6767
  • ==MT8673
  • ==MT6853
  • ==MT6895
  • ==MT6769
  • ==MT8666
  • ==MT8893
  • ==MT6765
  • ==MT6833
  • ==MT6771
  • ==MT6893
  • ==MT8788E
Dismissed
(max. allowed matches exceeded)
created 1 month, 4 weeks ago Activity log
  • Created & dismissed (max. allowed matches exceeded) suggestion
mm/mincore: handle non-swap entries before !CONFIG_SWAP guard

In the Linux kernel, the following vulnerability has been resolved: mm/mincore: handle non-swap entries before !CONFIG_SWAP guard mincore_swap() also fields migration/hwpoison entries (and shmem swapin-error entries), which can exist on !CONFIG_SWAP builds when CONFIG_MIGRATION or CONFIG_MEMORY_FAILURE is enabled. The !IS_ENABLED(CONFIG_SWAP) guard ran before the non-swap-entry early return, so mincore_pte_range() can spuriously WARN and report these pages nonresident on !CONFIG_SWAP kernels. Move the guard below the non-swap-entry check so only true swap entries trip the WARN, and migration/hwpoison entries take the existing "uptodate / non-shmem" path.

Affected products

Linux
  • =<*
  • <a8f91ddf67f669f547bb9fb559738da6f8ee2cf3
  • <6.18
  • =<6.18.*
  • =<7.0.*
  • <3481d4372ae34243f7025925314385b852c50f7e
  • <0c25b8734367574e21aeb8468c2e522713134da7
  • ==6.18