Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): lock file maintenance #170

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Jan 2, 2025

This PR contains the following updates:

Update Change
lockFileMaintenance All locks refreshed

🔧 This Pull Request updates lock files to use the latest dependency versions.


Configuration

📅 Schedule: Branch creation - "* 0-3 * * *" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Copy link

github-actions bot commented Jan 2, 2025

Report for roland

Version changes:

Version 1 -> 2:
  astro-grammar: 0.0.0+rev=6e3bad3 → 0.0.0+rev=0ad33e3
  bicep-grammar: 0.0.0+rev=0092c7d → 0.0.0+rev=bff5988
  bp-grammar: 0.0.0+rev=4e60cf3 → 0.0.0+rev=16c4306
  gap-grammar: 0.0.0+rev=141b063 → 0.0.0+rev=ea70c22
  gaptst-grammar: 0.0.0+rev=e0723dc → 0.0.0+rev=69086d7
  gnuplot-grammar: 0.0.0+rev=3c895f5 → 0.0.0+rev=8923c1e, -117.8 KiB
  heex-grammar: 0.0.0+rev=9359017 → 0.0.0+rev=f6b83f3
  index-x86_64: +2028.2 KiB
  index-x86_64-linux: +40.2 KiB
  inko-grammar: 0.0.0+rev=1419efb → 0.0.0+rev=0b08a8f
  java-grammar: 0.0.0+rev=a1bbe92 → 0.0.0+rev=94703d5
  just-grammar: 0.0.0+rev=f6d2930 → 0.0.0+rev=4f4e566
  kconfig-grammar: 0.0.0+rev=486fea7 → 0.0.0+rev=9ac99fe, +16.3 KiB
  koto-grammar: 0.0.0+rev=0017388 → 0.0.0+rev=b420f79, +28.0 KiB
  luajit2.1-lpeg: 1.1.0-1 → 1.1.0-2
  luau-grammar: 0.0.0+rev=fbadc96 → 0.0.0+rev=a8914d6
  nixos-system-roland: 25.05.20241227.634fd46 → 25.05.20241229.88195a9
  nu-grammar: 0.0.0+rev=dc22e25 → 0.0.0+rev=755efd5
  odin-grammar: 0.0.0+rev=3fee796 → 0.0.0+rev=e8adc73, +68.0 KiB
  powershell-grammar: 0.0.0+rev=ff0ac42 → 0.0.0+rev=32fe49c
  puppet-grammar: 0.0.0+rev=584522f → 0.0.0+rev=15f1929
  python-grammar: 0.0.0+rev=1ee3e77 → 0.0.0+rev=bffb65a
  regex-grammar: 0.0.0+rev=4470c59 → 0.0.0+rev=d329907
  scala-grammar: 0.0.0+rev=fb999c7 → 0.0.0+rev=d3b9553
  sd-switch: ∅ → 0.5.3, +2871.0 KiB
  source: -53.5 KiB
  systemd-activate.sh: ε → ∅
  tsx-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  typescript-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  v-grammar: 0.0.0+rev=bc2aa29 → 0.0.0+rev=b9644a2
  verilog-grammar: 0.0.0+rev=0dacb91 → 0.0.0+rev=15fbf73, -144.0 KiB
  vimplugin-nvim-lspconfig: 2024-12-19 → 2024-12-28
  vimplugin-nvim-treesitter: 2024-12-19 → 2024-12-28
  xresources-grammar: 0.0.0+rev=3b9f6a8 → 0.0.0+rev=5fd347f
  zig-grammar: 0.0.0+rev=eb7d58c → 0.0.0+rev=b670c8d, +12.0 KiB
Security vulnerability report
59 derivations with active advisories
3 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/p0qzpn51qxk1qgjmri6jxhvv8z8d7zqz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/9gzzqlxwdbgh07vqhgk82nvnf0gqmmbr-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


cereal-0.5.8.3

/nix/store/nf84ji9qv6ms6b7sdnf5x9lmw1yzl446-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


cups-2.4.11

/nix/store/3lycyp063gwljlazccjylbbai46hbd87-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/5iwbmy7ml0mn08pmijqdjcsasxbpkx97-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/zcnfqn3p3k7kwyqnr6wgcyp65l1yyh23-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/2nhylhcj4cxl929zh6fcz2xlaawk00c8-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


ecdsa-0.14.8

/nix/store/yx0w4xv99mankfd9429vzzrni0vv1brm-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


foundation-0.0.30

/nix/store/q5d0ff5gza3f9cy0hib7vkj2rijnr705-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


gcc-14-20241116

/nix/store/2hwjfka1izg8hyzan7ki90pcwv3y604g-gcc-14-20241116.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/n7pwjqn4230bihzqlfxh88n5jxa5wlmw-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/h1vwmg8c2bxxq9002f2bgc9zyrnjc6lx-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.4

/nix/store/h5i2qzmzj8hwyfxrf3fq23d7ngxpxyj2-go-1.23.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ny3alpgs5qhaw1b3cfz1p8hqqh3h7yil-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/06bv2zd89ccjxyiwfxamv2wrizpfb5vd-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/p79q2mvvdplh45nb9kdpafk30m396qwq-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/ds17aqlqflidp78bpdiv8vy7bxpf4vw7-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/hwzn56d4dnig5447764qvvrfrpxmjrsg-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/x75wxyqa788c98jq0ak1vvry8fy5x4p1-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/mb7f1w5p7lxlz0i5jh1dqbkc0v3yfk9m-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/vbgwc4mq0f316bvq9jn7z0icjnwbkvjf-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/8gxpp3cpamy45pngvgqz70sk84pzsx82-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/3fgwnzfs0n9kzh7nvjcwvk3g8g2316wb-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


jbig2dec-0.20

/nix/store/njr7micbgl8q02mld486pskx41h782sr-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/3f59kn9cn38g3w1l0z7rvqs9wsjmnc2x-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/r4ryqfvcznd446hlhdmb35zfqvpq372q-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/8pkwzp1qg7b3xsxyzrwvr3zd7qvaivs3-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/im4nzcqba8k6axsrli5b17l5s312ssxd-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


network-3.1.4.0

/nix/store/sypidkww6hirvzdcyn0ipca5bb9dllkr-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/d7x9abcasn26iqiyd36b6xdd2xhz2krd-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/mihvk9hk4vfxj903c7sd2wx59imvcxlw-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/kannx44mfqw1lawn27ph7ywy2ymlghii-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/plrkwydn5h8rr3cp1nfpbh6vljhvhb9v-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/kd6svjp0fw0lw3zqiy96rn98hq4gfkpg-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


pip-20.3.4-source

/nix/store/dgzs3ciz69hmmcq46c1q2953859wf8bk-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/8f8606jqd48f41w43224v3w88kzab3k2-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/yb3w7yd1nardlqi18v8byprppwqqhyxg-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/yg98xx94386asan67mlr35ii21zlj49l-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/wajbvr5kkz2g9v56aw324i17pi237l5m-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/3r3a8m5i4hsskhnwxzwa52j2b7y3j5wc-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/n3w7b9gyiddklad2gzj7ashd0gp6sjcv-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/1z88qbbcm9p55csgx9irbia1q3g2fwlb-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/4apbkmlm50v6bzacqzxx0j3xxscajnab-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/g7v8si2rayh53y444gkwc1xlk5jgvpl5-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.23

/nix/store/sm9nzvs609j5b48pl9nagfd295dhqcxk-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/9lqqaj0fa60m06dqmp8kgrh06gf2c5db-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/2nffw67k62dxmwc3szpyx0y6w3mdhksh-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


vault-0.3.1.5

/nix/store/lmwim8kfxv51d4sknc7vy7b5qhfxqaw6-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/a37k8bmzwiifr35n20b9j7jnpkhbbn0l-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/qdlhnhsq9vs164ywp88y1911vid6wz5z-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/rwdy8c857w3y5ydwz9yxiid4mf1q31hk-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/fbdq6a6xjp94gix05chdjlvciy4ciwa4-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/5dlrgpvg0x1ib3bw6hzc0l4929yvnn22-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/fl0p9k45m41id76mqqvns6wdkfs32svs-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/nbk09q061rcyn5nc3gdd736f8p4q1lgf-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/kgr8znp35sfc3df7pv3cbwjalalmrx63-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/jjdbjm2zdv9a8bcip9zglvdpz8cr2gxz-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/6xc022jd2255nl3ll9byfp7nfkwxz3yp-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/mxqan1amqdgqnw9wjkdkqy1z88bzfsw3-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

github-actions bot commented Jan 2, 2025

Report for marlon

Version changes:

Version 1 -> 2:
  astro-grammar: 0.0.0+rev=6e3bad3 → 0.0.0+rev=0ad33e3
  bicep-grammar: 0.0.0+rev=0092c7d → 0.0.0+rev=bff5988
  bp-grammar: 0.0.0+rev=4e60cf3 → 0.0.0+rev=16c4306
  extra: ε → ∅, -36446.8 KiB
  gap-grammar: 0.0.0+rev=141b063 → 0.0.0+rev=ea70c22
  gaptst-grammar: 0.0.0+rev=e0723dc → 0.0.0+rev=69086d7
  gnuplot-grammar: 0.0.0+rev=3c895f5 → 0.0.0+rev=8923c1e, -117.8 KiB
  heex-grammar: 0.0.0+rev=9359017 → 0.0.0+rev=f6b83f3
  index-x86_64: +2028.2 KiB
  index-x86_64-linux: +40.2 KiB
  initrd: ε → ∅
  initrd-linux-hardened: +19.6 KiB
  inko-grammar: 0.0.0+rev=1419efb → 0.0.0+rev=0b08a8f
  java-grammar: 0.0.0+rev=a1bbe92 → 0.0.0+rev=94703d5
  just-grammar: 0.0.0+rev=f6d2930 → 0.0.0+rev=4f4e566
  kconfig-grammar: 0.0.0+rev=486fea7 → 0.0.0+rev=9ac99fe, +16.3 KiB
  koto-grammar: 0.0.0+rev=0017388 → 0.0.0+rev=b420f79, +28.0 KiB
  luajit2.1-lpeg: 1.1.0-1 → 1.1.0-2
  luau-grammar: 0.0.0+rev=fbadc96 → 0.0.0+rev=a8914d6
  nixos-system-marlon: 25.05.20241227.634fd46 → 25.05.20241229.88195a9
  nu-grammar: 0.0.0+rev=dc22e25 → 0.0.0+rev=755efd5
  odin-grammar: 0.0.0+rev=3fee796 → 0.0.0+rev=e8adc73, +68.0 KiB
  powershell-grammar: 0.0.0+rev=ff0ac42 → 0.0.0+rev=32fe49c
  puppet-grammar: 0.0.0+rev=584522f → 0.0.0+rev=15f1929
  python-grammar: 0.0.0+rev=1ee3e77 → 0.0.0+rev=bffb65a
  regex-grammar: 0.0.0+rev=4470c59 → 0.0.0+rev=d329907
  scala-grammar: 0.0.0+rev=fb999c7 → 0.0.0+rev=d3b9553
  sd-switch: ∅ → 0.5.3, +2871.0 KiB
  source: -53.5 KiB
  stage: 1-init.sh → ∅, -22.1 KiB
  systemd-activate.sh: ε → ∅
  tsx-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  typescript-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  udev: -33.6 KiB
  v-grammar: 0.0.0+rev=bc2aa29 → 0.0.0+rev=b9644a2
  verilog-grammar: 0.0.0+rev=0dacb91 → 0.0.0+rev=15fbf73, -144.0 KiB
  vimplugin-nvim-lspconfig: 2024-12-19 → 2024-12-28
  vimplugin-nvim-treesitter: 2024-12-19 → 2024-12-28
  xresources-grammar: 0.0.0+rev=3b9f6a8 → 0.0.0+rev=5fd347f
  zig-grammar: 0.0.0+rev=eb7d58c → 0.0.0+rev=b670c8d, +12.0 KiB
Security vulnerability report
60 derivations with active advisories
3 derivations left out due to whitelisting

audiofile-0.3.6

/nix/store/p0qzpn51qxk1qgjmri6jxhvv8z8d7zqz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/9gzzqlxwdbgh07vqhgk82nvnf0gqmmbr-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


cereal-0.5.8.3

/nix/store/nf84ji9qv6ms6b7sdnf5x9lmw1yzl446-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


cups-2.4.11

/nix/store/3lycyp063gwljlazccjylbbai46hbd87-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/5iwbmy7ml0mn08pmijqdjcsasxbpkx97-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/zcnfqn3p3k7kwyqnr6wgcyp65l1yyh23-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/p5yc3lh67nhvvx7znnkwlmshzgvy7as4-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


ecdsa-0.14.8

/nix/store/yx0w4xv99mankfd9429vzzrni0vv1brm-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


foundation-0.0.30

/nix/store/q5d0ff5gza3f9cy0hib7vkj2rijnr705-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


gcc-14-20241116

/nix/store/2hwjfka1izg8hyzan7ki90pcwv3y604g-gcc-14-20241116.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/n7pwjqn4230bihzqlfxh88n5jxa5wlmw-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/h1vwmg8c2bxxq9002f2bgc9zyrnjc6lx-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.4

/nix/store/h5i2qzmzj8hwyfxrf3fq23d7ngxpxyj2-go-1.23.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ny3alpgs5qhaw1b3cfz1p8hqqh3h7yil-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/06bv2zd89ccjxyiwfxamv2wrizpfb5vd-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/p79q2mvvdplh45nb9kdpafk30m396qwq-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/ds17aqlqflidp78bpdiv8vy7bxpf4vw7-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/hwzn56d4dnig5447764qvvrfrpxmjrsg-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/x75wxyqa788c98jq0ak1vvry8fy5x4p1-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/mb7f1w5p7lxlz0i5jh1dqbkc0v3yfk9m-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/vbgwc4mq0f316bvq9jn7z0icjnwbkvjf-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/8gxpp3cpamy45pngvgqz70sk84pzsx82-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/3fgwnzfs0n9kzh7nvjcwvk3g8g2316wb-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


jbig2dec-0.20

/nix/store/njr7micbgl8q02mld486pskx41h782sr-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/3f59kn9cn38g3w1l0z7rvqs9wsjmnc2x-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/r4ryqfvcznd446hlhdmb35zfqvpq372q-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/8pkwzp1qg7b3xsxyzrwvr3zd7qvaivs3-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/im4nzcqba8k6axsrli5b17l5s312ssxd-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


mercurial-6.8.2

/nix/store/ijmkwb07kqyc9di1ir399jfxpfhr6ggz-mercurial-6.8.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43410 5.3


network-3.1.4.0

/nix/store/sypidkww6hirvzdcyn0ipca5bb9dllkr-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/d7x9abcasn26iqiyd36b6xdd2xhz2krd-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/mihvk9hk4vfxj903c7sd2wx59imvcxlw-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/kannx44mfqw1lawn27ph7ywy2ymlghii-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/plrkwydn5h8rr3cp1nfpbh6vljhvhb9v-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openvpn-2.6.12

/nix/store/kd6svjp0fw0lw3zqiy96rn98hq4gfkpg-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


pip-20.3.4-source

/nix/store/dgzs3ciz69hmmcq46c1q2953859wf8bk-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


polkit-1.pam

/nix/store/8f8606jqd48f41w43224v3w88kzab3k2-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/yb3w7yd1nardlqi18v8byprppwqqhyxg-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/yg98xx94386asan67mlr35ii21zlj49l-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/wajbvr5kkz2g9v56aw324i17pi237l5m-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/3r3a8m5i4hsskhnwxzwa52j2b7y3j5wc-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/n3w7b9gyiddklad2gzj7ashd0gp6sjcv-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/1z88qbbcm9p55csgx9irbia1q3g2fwlb-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/4apbkmlm50v6bzacqzxx0j3xxscajnab-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/g7v8si2rayh53y444gkwc1xlk5jgvpl5-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.23

/nix/store/sm9nzvs609j5b48pl9nagfd295dhqcxk-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/9lqqaj0fa60m06dqmp8kgrh06gf2c5db-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


stringbuilder-0.5.1

/nix/store/2nffw67k62dxmwc3szpyx0y6w3mdhksh-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


vault-0.3.1.5

/nix/store/lmwim8kfxv51d4sknc7vy7b5qhfxqaw6-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/a37k8bmzwiifr35n20b9j7jnpkhbbn0l-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/qdlhnhsq9vs164ywp88y1911vid6wz5z-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/rwdy8c857w3y5ydwz9yxiid4mf1q31hk-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/fbdq6a6xjp94gix05chdjlvciy4ciwa4-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/5dlrgpvg0x1ib3bw6hzc0l4929yvnn22-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/fl0p9k45m41id76mqqvns6wdkfs32svs-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/nbk09q061rcyn5nc3gdd736f8p4q1lgf-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/kgr8znp35sfc3df7pv3cbwjalalmrx63-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/jjdbjm2zdv9a8bcip9zglvdpz8cr2gxz-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/6xc022jd2255nl3ll9byfp7nfkwxz3yp-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/mxqan1amqdgqnw9wjkdkqy1z88bzfsw3-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

github-actions bot commented Jan 2, 2025

Report for vic

Version changes:

Version 1 -> 2:
  astro-grammar: 0.0.0+rev=6e3bad3 → 0.0.0+rev=0ad33e3
  bicep-grammar: 0.0.0+rev=0092c7d → 0.0.0+rev=bff5988
  bp-grammar: 0.0.0+rev=4e60cf3 → 0.0.0+rev=16c4306
  gap-grammar: 0.0.0+rev=141b063 → 0.0.0+rev=ea70c22
  gaptst-grammar: 0.0.0+rev=e0723dc → 0.0.0+rev=69086d7
  gnuplot-grammar: 0.0.0+rev=3c895f5 → 0.0.0+rev=8923c1e, -117.8 KiB
  heex-grammar: 0.0.0+rev=9359017 → 0.0.0+rev=f6b83f3
  index-x86_64: +2028.2 KiB
  index-x86_64-linux: +40.2 KiB
  inko-grammar: 0.0.0+rev=1419efb → 0.0.0+rev=0b08a8f
  java-grammar: 0.0.0+rev=a1bbe92 → 0.0.0+rev=94703d5
  just-grammar: 0.0.0+rev=f6d2930 → 0.0.0+rev=4f4e566
  kconfig-grammar: 0.0.0+rev=486fea7 → 0.0.0+rev=9ac99fe, +16.3 KiB
  koto-grammar: 0.0.0+rev=0017388 → 0.0.0+rev=b420f79, +28.0 KiB
  linux-hardened: +17.8 KiB
  luajit2.1-lpeg: 1.1.0-1 → 1.1.0-2
  luau-grammar: 0.0.0+rev=fbadc96 → 0.0.0+rev=a8914d6
  nixos-system-vic: 25.05.20241227.634fd46 → 25.05.20241229.88195a9
  nu-grammar: 0.0.0+rev=dc22e25 → 0.0.0+rev=755efd5
  odin-grammar: 0.0.0+rev=3fee796 → 0.0.0+rev=e8adc73, +68.0 KiB
  powershell-grammar: 0.0.0+rev=ff0ac42 → 0.0.0+rev=32fe49c
  puppet-grammar: 0.0.0+rev=584522f → 0.0.0+rev=15f1929
  python-grammar: 0.0.0+rev=1ee3e77 → 0.0.0+rev=bffb65a
  regex-grammar: 0.0.0+rev=4470c59 → 0.0.0+rev=d329907
  scala-grammar: 0.0.0+rev=fb999c7 → 0.0.0+rev=d3b9553
  sd-switch: ∅ → 0.5.3, +2871.0 KiB
  source: -53.5 KiB
  systemd-activate.sh: ε → ∅
  tsx-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  typescript-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d
  v-grammar: 0.0.0+rev=bc2aa29 → 0.0.0+rev=b9644a2
  verilog-grammar: 0.0.0+rev=0dacb91 → 0.0.0+rev=15fbf73, -144.0 KiB
  vimplugin-nvim-lspconfig: 2024-12-19 → 2024-12-28
  vimplugin-nvim-treesitter: 2024-12-19 → 2024-12-28
  xresources-grammar: 0.0.0+rev=3b9f6a8 → 0.0.0+rev=5fd347f
  zig-grammar: 0.0.0+rev=eb7d58c → 0.0.0+rev=b670c8d, +12.0 KiB
Security vulnerability report
70 derivations with active advisories
3 derivations left out due to whitelisting

accountsservice-23.13.9

/nix/store/73r6v5iid7rpwwisx9rrr8wfnflrsp48-accountsservice-23.13.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3297 7.8


audiofile-0.3.6

/nix/store/p0qzpn51qxk1qgjmri6jxhvv8z8d7zqz-audiofile-0.3.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-18781 5.5


avahi-0.8

/nix/store/9gzzqlxwdbgh07vqhgk82nvnf0gqmmbr-avahi-0.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-26720 7.8


cereal-0.5.8.3

/nix/store/nf84ji9qv6ms6b7sdnf5x9lmw1yzl446-cereal-0.5.8.3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11105 9.8
https://nvd.nist.gov/vuln/detail/CVE-2020-11104 5.3


console-0.15.8

/nix/store/ml6pkc70789pawjyn9vyknyn7y6vid23-console-0.15.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-33955 5.3


cups-2.4.11

/nix/store/3lycyp063gwljlazccjylbbai46hbd87-cups-2.4.11.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-26691 6.7


dash-0.5.12

/nix/store/5iwbmy7ml0mn08pmijqdjcsasxbpkx97-dash-0.5.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21485 5.4


dbus-0.9.7

/nix/store/zcnfqn3p3k7kwyqnr6wgcyp65l1yyh23-dbus-0.9.7.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


dbus-1

/nix/store/ywrlfvk2w0r9hrzyjlj2hcklkqdwf15k-dbus-1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-42010 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42011 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-42012 6.5


djvulibre-3.5.28

/nix/store/azs81j9v5xq7q1yy3ajh7x8f2qljk7w4-djvulibre-3.5.28.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-46310 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-46312 6.5


ecdsa-0.14.8

/nix/store/yx0w4xv99mankfd9429vzzrni0vv1brm-ecdsa-0.14.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23342 7.4


ffmpeg-4.4.5

/nix/store/3c97p8w8wbcpca7jcvnvd4jhivzsivx5-ffmpeg-4.4.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-22860 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-22862 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-7272 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-48434 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-47470 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3109 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-22861 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-46407 5.5
https://nvd.nist.gov/vuln/detail/CVE-2022-3341 5.3


foundation-0.0.30

/nix/store/q5d0ff5gza3f9cy0hib7vkj2rijnr705-foundation-0.0.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-26304 7.5


gcc-14-20241116

/nix/store/2hwjfka1izg8hyzan7ki90pcwv3y604g-gcc-14-20241116.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-4039 4.8


git-2.47.0

/nix/store/n7pwjqn4230bihzqlfxh88n5jxa5wlmw-git-2.47.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36882 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-30947 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-36883 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38663 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-21684 6.1
https://nvd.nist.gov/vuln/detail/CVE-2020-2136 5.4
https://nvd.nist.gov/vuln/detail/CVE-2022-36884 5.3


go-1.21.0-linux-amd64-bootstrap

/nix/store/h1vwmg8c2bxxq9002f2bgc9zyrnjc6lx-go-1.21.0-linux-amd64-bootstrap.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-39320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2024-24790 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-39323 8.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39321 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39322 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39325 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-44487 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-39318 6.1
https://nvd.nist.gov/vuln/detail/CVE-2023-39319 6.1
https://nvd.nist.gov/vuln/detail/CVE-2024-24789 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


go-1.23.4

/nix/store/h5i2qzmzj8hwyfxrf3fq23d7ngxpxyj2-go-1.23.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-49292 4.8


h2-0.3.26

/nix/store/ny3alpgs5qhaw1b3cfz1p8hqqh3h7yil-h2-0.3.26.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


h2-0.4.6

/nix/store/06bv2zd89ccjxyiwfxamv2wrizpfb5vd-h2-0.4.6.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-45868 7.8


hedgehog-1.4

/nix/store/p79q2mvvdplh45nb9kdpafk30m396qwq-hedgehog-1.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


hedgehog-1.4-r8.cabal

/nix/store/ds17aqlqflidp78bpdiv8vy7bxpf4vw7-hedgehog-1.4-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4276 8.8


home-0.5.9

/nix/store/hwzn56d4dnig5447764qvvrfrpxmjrsg-home-0.5.9.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-3612 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-25264 6.7


http-0.2.12

/nix/store/x75wxyqa788c98jq0ak1vvry8fy5x4p1-http-0.2.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-35669 6.1


http-1.1.0

/nix/store/mb7f1w5p7lxlz0i5jh1dqbkc0v3yfk9m-http-1.1.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36032 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-26044 5.3


http-client-0.7.17

/nix/store/vbgwc4mq0f316bvq9jn7z0icjnwbkvjf-http-client-0.7.17.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-11021 7.5


hyper-0.14.30

/nix/store/8gxpp3cpamy45pngvgqz70sk84pzsx82-hyper-0.14.30.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


hyper-1.4.1

/nix/store/3fgwnzfs0n9kzh7nvjcwvk3g8g2316wb-hyper-1.4.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-23741 9.8


imagemagick-7.1.1-40

/nix/store/c7wx49n5d5dwbi08z3lq040vpf8cy45g-imagemagick-7.1.1-40.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5341 5.5


jbig2dec-0.20

/nix/store/njr7micbgl8q02mld486pskx41h782sr-jbig2dec-0.20.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-46361 6.5


lapack-3

/nix/store/3f59kn9cn38g3w1l0z7rvqs9wsjmnc2x-lapack-3.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4048 9.1


libmemcached-1.0.18

/nix/store/r4ryqfvcznd446hlhdmb35zfqvpq372q-libmemcached-1.0.18.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-27478 6.5


libmpeg2-0.5.1

/nix/store/8pkwzp1qg7b3xsxyzrwvr3zd7qvaivs3-libmpeg2-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37416 6.5


libsndfile-1.2.2

/nix/store/im4nzcqba8k6axsrli5b17l5s312ssxd-libsndfile-1.2.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-50613 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-50612 5.5


lua-5.2.4

/nix/store/3pqg0hzlk51x9w1xzv9gh6dzqjqml5s8-lua-5.2.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-43519 5.5


mercurial-6.8.2

/nix/store/ijmkwb07kqyc9di1ir399jfxpfhr6ggz-mercurial-6.8.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43410 5.3


network-3.1.4.0

/nix/store/sypidkww6hirvzdcyn0ipca5bb9dllkr-network-3.1.4.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


network-3.1.4.0-r1.cabal

/nix/store/d7x9abcasn26iqiyd36b6xdd2xhz2krd-network-3.1.4.0-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-35048 9.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35047 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35049 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24388 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24389 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24390 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24391 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24392 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24393 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-24394 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0486 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0997 7.8
https://nvd.nist.gov/vuln/detail/CVE-2021-35050 7.5


ninja-1.12.1

/nix/store/mihvk9hk4vfxj903c7sd2wx59imvcxlw-ninja-1.12.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4336 9.8


numpy-0.21.0

/nix/store/kannx44mfqw1lawn27ph7ywy2ymlghii-numpy-0.21.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-41496 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-34141 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-41495 5.3


oh-my-zsh-2024-10-01

/nix/store/plrkwydn5h8rr3cp1nfpbh6vljhvhb9v-oh-my-zsh-2024-10-01.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3727 9.8


openexr-2.5.10

/nix/store/j7s260cx89vkmczfg4c2gcsqg34v06fn-openexr-2.5.10.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-5841 9.1
https://nvd.nist.gov/vuln/detail/CVE-2021-23169 8.8
https://nvd.nist.gov/vuln/detail/CVE-2021-3598 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3605 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23215 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26260 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-26945 5.5


openvpn-2.6.12

/nix/store/kd6svjp0fw0lw3zqiy96rn98hq4gfkpg-openvpn-2.6.12.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27569 7.5


pip-20.3.4-source

/nix/store/dgzs3ciz69hmmcq46c1q2953859wf8bk-pip-20.3.4-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-3572 5.7
https://nvd.nist.gov/vuln/detail/CVE-2023-5752 3.3


plasma-workspace-5.27.11.1

/nix/store/rgvk109fhnnkj3a6xj16hdifvfibw8qv-plasma-workspace-5.27.11.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-1433 3.7


polkit-1.pam

/nix/store/lg9g16pbkc8ca9rhmy45irdll6yvpf73-polkit-1.pam.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-4034 7.8


python-2.7.18.8

/nix/store/yb3w7yd1nardlqi18v8byprppwqqhyxg-python-2.7.18.8.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-48565 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-0391 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-45061 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48560 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-24329 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-36632 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-6232 7.5
https://nvd.nist.gov/vuln/detail/CVE-2024-7592 7.5
https://nvd.nist.gov/vuln/detail/CVE-2022-26488 7.0
https://nvd.nist.gov/vuln/detail/CVE-2021-3733 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-48564 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-23336 5.9
https://nvd.nist.gov/vuln/detail/CVE-2022-48566 5.9
https://nvd.nist.gov/vuln/detail/CVE-2023-40217 5.3


quote-1.0.36

/nix/store/yg98xx94386asan67mlr35ii21zlj49l-quote-1.0.36.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


quote-1.0.37

/nix/store/wajbvr5kkz2g9v56aw324i17pi237l5m-quote-1.0.37.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-16194 5.3


rubygems-3.5.22

/nix/store/3r3a8m5i4hsskhnwxzwa52j2b7y3j5wc-rubygems-3.5.22.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-36073 8.8


safe-0.3.21

/nix/store/n3w7b9gyiddklad2gzj7ashd0gp6sjcv-safe-0.3.21.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


safe-0.3.21-r1.cabal

/nix/store/1z88qbbcm9p55csgx9irbia1q3g2fwlb-safe-0.3.21-r1.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-28872 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-38164 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-47524 5.4
https://nvd.nist.gov/vuln/detail/CVE-2021-44751 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40834 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-40835 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28868 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28869 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28870 4.3
https://nvd.nist.gov/vuln/detail/CVE-2022-28873 4.3
https://nvd.nist.gov/vuln/detail/CVE-2021-33596 4.1
https://nvd.nist.gov/vuln/detail/CVE-2021-33594 3.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33595 3.5
https://nvd.nist.gov/vuln/detail/CVE-2022-38163 3.5


samba-4.20.4

/nix/store/4apbkmlm50v6bzacqzxx0j3xxscajnab-samba-4.20.4.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-32743 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-3670 6.5
https://nvd.nist.gov/vuln/detail/CVE-2022-1615 5.5


sassc-3.6.2

/nix/store/g7v8si2rayh53y444gkwc1xlk5jgvpl5-sassc-3.6.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-43357 7.5


semver-1.0.23

/nix/store/sm9nzvs609j5b48pl9nagfd295dhqcxk-semver-1.0.23.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-25883 7.5


setuptools-44.0.0-source

/nix/store/9lqqaj0fa60m06dqmp8kgrh06gf2c5db-setuptools-44.0.0-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40897 5.9


snappy-1.2.1

/nix/store/n3cjnaqs8xm2qiq9jvvy96nlhm5xbssh-snappy-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-28115 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-41330 9.8


stringbuilder-0.5.1

/nix/store/2nffw67k62dxmwc3szpyx0y6w3mdhksh-stringbuilder-0.5.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2024-21524 9.1


tap-1.0.1

/nix/store/kv1r4vwr6x5rwwvk49g07hwvacnm7sqd-tap-1.0.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-41940 5.4


vault-0.3.1.5

/nix/store/lmwim8kfxv51d4sknc7vy7b5qhfxqaw6-vault-0.3.1.5.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


vault-0.3.1.5-r8.cabal

/nix/store/a37k8bmzwiifr35n20b9j7jnpkhbbn0l-vault-0.3.1.5-r8.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-24999 8.1
https://nvd.nist.gov/vuln/detail/CVE-2020-13223 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-27400 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-6337 7.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0620 6.7
https://nvd.nist.gov/vuln/detail/CVE-2023-0665 6.5
https://nvd.nist.gov/vuln/detail/CVE-2024-8365 6.5
https://nvd.nist.gov/vuln/detail/CVE-2021-41802 5.4
https://nvd.nist.gov/vuln/detail/CVE-2023-2121 5.4
https://nvd.nist.gov/vuln/detail/CVE-2020-25594 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-3024 5.3
https://nvd.nist.gov/vuln/detail/CVE-2021-38554 5.3
https://nvd.nist.gov/vuln/detail/CVE-2022-41316 5.3
https://nvd.nist.gov/vuln/detail/CVE-2023-25000 4.7


warp-3.3.31

/nix/store/qdlhnhsq9vs164ywp88y1911vid6wz5z-warp-3.3.31.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3320 9.8
https://nvd.nist.gov/vuln/detail/CVE-2022-3512 8.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4428 8.0
https://nvd.nist.gov/vuln/detail/CVE-2022-2145 7.8
https://nvd.nist.gov/vuln/detail/CVE-2022-2225 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-0652 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1412 7.8
https://nvd.nist.gov/vuln/detail/CVE-2023-1862 7.3
https://nvd.nist.gov/vuln/detail/CVE-2023-2754 6.8
https://nvd.nist.gov/vuln/detail/CVE-2022-4457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0238 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-0654 3.7


wheel-0.37.1-source

/nix/store/rwdy8c857w3y5ydwz9yxiid4mf1q31hk-wheel-0.37.1-source.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-40898 7.5


xdg-utils-1.2.1

/nix/store/fbdq6a6xjp94gix05chdjlvciy4ciwa4-xdg-utils-1.2.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2020-27748 6.5


yaml-0.11.11.2

/nix/store/5dlrgpvg0x1ib3bw6hzc0l4929yvnn22-yaml-0.11.11.2.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yaml-0.11.11.2-r2.cabal

/nix/store/fl0p9k45m41id76mqqvns6wdkfs32svs-yaml-0.11.11.2-r2.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-3064 7.5
https://nvd.nist.gov/vuln/detail/CVE-2021-4235 5.5


yara-4.5.0

/nix/store/nbk09q061rcyn5nc3gdd736f8p4q1lgf-yara-4.5.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-45429 5.5


yasm-1.3.0

/nix/store/kgr8znp35sfc3df7pv3cbwjalalmrx63-yasm-1.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2021-33454 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33455 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33456 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33457 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33458 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33459 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33460 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33461 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33462 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33463 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33464 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33465 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33466 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33467 5.5
https://nvd.nist.gov/vuln/detail/CVE-2021-33468 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-30402 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31972 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31973 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31974 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-51258 5.5
https://nvd.nist.gov/vuln/detail/CVE-2023-31975 3.3


zlib-0.6.3.0

/nix/store/jjdbjm2zdv9a8bcip9zglvdpz8cr2gxz-zlib-0.6.3.0.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-0.6.3.0-r5.cabal

/nix/store/6xc022jd2255nl3ll9byfp7nfkwxz3yp-zlib-0.6.3.0-r5.cabal.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2022-37434 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-45853 9.8
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5


zlib-1.3.1

/nix/store/mxqan1amqdgqnw9wjkdkqy1z88bzfsw3-zlib-1.3.1.drv
CVE CVSSv3
https://nvd.nist.gov/vuln/detail/CVE-2023-6992 5.5

use --show-whitelisted to see derivations with only whitelisted CVEs

Copy link

github-actions bot commented Jan 2, 2025

Report for elmira

Version changes:

Version 1 -> 2:'
'  astro-grammar: 0.0.0+rev=6e3bad3 → 0.0.0+rev=0ad33e3'
'  bicep-grammar: 0.0.0+rev=0092c7d → 0.0.0+rev=bff5988'
'  bp-grammar: 0.0.0+rev=4e60cf3 → 0.0.0+rev=16c4306'
'  darwin: +8.7 KiB'
'  darwin-manual: +21.3 KiB'
'  darwin-system: 25.05.20241227.634fd46+darwin4.53a0c2f → 25.05.20241229.88195a9+darwin4.6a1fdb2'
'  gap-grammar: 0.0.0+rev=141b063 → 0.0.0+rev=ea70c22'
'  gaptst-grammar: 0.0.0+rev=e0723dc → 0.0.0+rev=69086d7'
'  gnuplot-grammar: 0.0.0+rev=3c895f5 → 0.0.0+rev=8923c1e, -390.6 KiB'
'  heex-grammar: 0.0.0+rev=9359017 → 0.0.0+rev=f6b83f3'
'  index-aarch64: +1262.5 KiB'
'  index-aarch64-darwin: +36.6 KiB'
'  inko-grammar: 0.0.0+rev=1419efb → 0.0.0+rev=0b08a8f'
'  java-grammar: 0.0.0+rev=a1bbe92 → 0.0.0+rev=94703d5'
'  just-grammar: 0.0.0+rev=f6d2930 → 0.0.0+rev=4f4e566'
'  kconfig-grammar: 0.0.0+rev=486fea7 → 0.0.0+rev=9ac99fe, +16.4 KiB'
'  koto-grammar: 0.0.0+rev=0017388 → 0.0.0+rev=b420f79, +32.3 KiB'
'  luajit2.1-lpeg: 1.1.0-1 → 1.1.0-2'
'  luau-grammar: 0.0.0+rev=fbadc96 → 0.0.0+rev=a8914d6'
'  nu-grammar: 0.0.0+rev=dc22e25 → 0.0.0+rev=755efd5'
'  odin-grammar: 0.0.0+rev=3fee796 → 0.0.0+rev=e8adc73, +80.6 KiB'
'  powershell-grammar: 0.0.0+rev=ff0ac42 → 0.0.0+rev=32fe49c'
'  puppet-grammar: 0.0.0+rev=584522f → 0.0.0+rev=15f1929'
'  python-grammar: 0.0.0+rev=1ee3e77 → 0.0.0+rev=bffb65a'
'  regex-grammar: 0.0.0+rev=4470c59 → 0.0.0+rev=d329907'
'  scala-grammar: 0.0.0+rev=fb999c7 → 0.0.0+rev=d3b9553'
'  source: -53.5 KiB'
'  tsx-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d'
'  typescript-grammar: 0.0.0+rev=45af495 → 0.0.0+rev=8e13e1d'
'  v-grammar: 0.0.0+rev=bc2aa29 → 0.0.0+rev=b9644a2'
'  verilog-grammar: 0.0.0+rev=0dacb91 → 0.0.0+rev=15fbf73, -145.1 KiB'
'  vimplugin-nvim-lspconfig: 2024-12-19 → 2024-12-28'
'  vimplugin-nvim-treesitter: 2024-12-19 → 2024-12-28'
'  xresources-grammar: 0.0.0+rev=3b9f6a8 → 0.0.0+rev=5fd347f'
'  zig-grammar: 0.0.0+rev=eb7d58c → 0.0.0+rev=b670c8d
Security vulnerability report
49 derivations with active advisories'
'3 derivations left out due to whitelisting'
''
'------------------------------------------------------------------------'
'Security-11.0'
''
'/nix/store/n7ajz7c3m97rj5pk9kqcf7rb89naiq1x-Security-11.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-34893    7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37347    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37348    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-3779     5.5'
''
'------------------------------------------------------------------------'
'cereal-0.5.8.3'
''
'/nix/store/wmzpj39xywjw5ihmzby84s5i2nj5c6hc-cereal-0.5.8.3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11105    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11104    5.3'
''
'------------------------------------------------------------------------'
'dash-0.5.12'
''
'/nix/store/n2bm3hxfny8sn0j0qdvl1wbphhird2sr-dash-0.5.12.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-21485    5.4'
''
'------------------------------------------------------------------------'
'ecdsa-0.14.8'
''
'/nix/store/h847gzdigm08wg36p2c2w45695limvri-ecdsa-0.14.8.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23342    7.4'
''
'------------------------------------------------------------------------'
'foundation-0.0.30'
''
'/nix/store/hmd7fa05qdd0hf8hj9gyvhp9kclcbcic-foundation-0.0.30.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-26304    7.5'
''
'------------------------------------------------------------------------'
'gcc-14-20241116'
''
'/nix/store/8qlhvg0hbh4yrx1q9hhgzrs1ihimxmgx-gcc-14-20241116.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-4039     4.8'
''
'------------------------------------------------------------------------'
'git-2.47.0'
''
'/nix/store/092n206m8wnljvp6p8kzh00jhsvdy8v0-git-2.47.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36882    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-30947    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36883    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38663    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-21684    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-2136     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36884    5.3'
''
'------------------------------------------------------------------------'
'go-1.21.0-darwin-arm64-bootstrap'
''
'/nix/store/6vddqbsw7l08h8frq2z0vqgzyzdphmcz-go-1.21.0-darwin-arm64-bootstrap.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39320    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24790    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39323    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39321    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39322    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39325    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-44487    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39318    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2023-39319    6.1'
'https://nvd.nist.gov/vuln/detail/CVE-2024-24789    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'go-1.23.4'
''
'/nix/store/84bqd072ql6qzjmqsqcdbw3nv63waw49-go-1.23.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-49292    4.8'
''
'------------------------------------------------------------------------'
'h2-0.3.26'
''
'/nix/store/fd99nj4za445fzxarcz3b1cwfnvcik25-h2-0.3.26.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-45868    7.8'
''
'------------------------------------------------------------------------'
'h2-0.4.6'
''
'/nix/store/glmwrv9jqbhj0y570h373zvcb87gwir8-h2-0.4.6.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-45868    7.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4'
''
'/nix/store/g23wg0ybphnpprxwp45kn6mw6x4rlvrm-hedgehog-1.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'hedgehog-1.4-r8.cabal'
''
'/nix/store/ygy1c4l1v5g46p3g249djl2q0rgsf453-hedgehog-1.4-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4276     8.8'
''
'------------------------------------------------------------------------'
'home-0.5.9'
''
'/nix/store/ly3mnl7y88padkamm6xw3djh7kbvbf1v-home-0.5.9.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-3612     8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-25264    6.7'
''
'------------------------------------------------------------------------'
'http-0.2.12'
''
'/nix/store/zpm7zp5asjybk9g1ihd07lzhrqqkmvz1-http-0.2.12.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-35669    6.1'
''
'------------------------------------------------------------------------'
'http-1.1.0'
''
'/nix/store/jsn0r396bivv1arzrlnw8yy11vr4g06k-http-1.1.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36032    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-26044    5.3'
''
'------------------------------------------------------------------------'
'http-client-0.7.17'
''
'/nix/store/pv7q45p7xjvfzxj0qyri4pfx156z8gj4-http-client-0.7.17.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-11021    7.5'
''
'------------------------------------------------------------------------'
'hyper-0.14.30'
''
'/nix/store/gpk3i2qzkwagzcmi2c4p4ckl0zax71v3-hyper-0.14.30.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23741    9.8'
''
'------------------------------------------------------------------------'
'hyper-1.4.1'
''
'/nix/store/pjgqybnhmhs91195yw4pmsslvpd6ihjb-hyper-1.4.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-23741    9.8'
''
'------------------------------------------------------------------------'
'jbig2dec-0.20'
''
'/nix/store/damycr9qz5kyf2iijrg0np094ya552qk-jbig2dec-0.20.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-46361    6.5'
''
'------------------------------------------------------------------------'
'lapack-3'
''
'/nix/store/8cvh7dlaxhldbzh42f4321xfl41258ng-lapack-3.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4048     9.1'
''
'------------------------------------------------------------------------'
'libmemcached-1.0.18'
''
'/nix/store/24139cfkjmn6j38fdxp46fjqzhfwkb7f-libmemcached-1.0.18.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-27478    6.5'
''
'------------------------------------------------------------------------'
'libsndfile-1.2.2'
''
'/nix/store/0g4g1bkvzidgkqj9hyjl9d00sbl83pzi-libsndfile-1.2.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-50613    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-50612    5.5'
''
'------------------------------------------------------------------------'
'lua-5.2.4'
''
'/nix/store/kiipjfyskvj223zbggx19mln0naiqqp6-lua-5.2.4.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-43519    5.5'
''
'------------------------------------------------------------------------'
'mercurial-6.8.2'
''
'/nix/store/ha5k1b2jv9hmxzvwrv8l1plk8wby25j8-mercurial-6.8.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-43410    5.3'
''
'------------------------------------------------------------------------'
'network-3.1.4.0'
''
'/nix/store/99qd8sl7wjn7w5f5jr8bgdb7cpsg7cp7-network-3.1.4.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'network-3.1.4.0-r1.cabal'
''
'/nix/store/aann9dp4216g2pwq56fk2p8wni6y05ia-network-3.1.4.0-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35048    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35047    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35049    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24388    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24389    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24390    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24391    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24392    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24393    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-24394    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0486     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-0997     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2021-35050    7.5'
''
'------------------------------------------------------------------------'
'ninja-1.12.1'
''
'/nix/store/crfivdba7wyd4gy19hhjpbxfbrvpx18d-ninja-1.12.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4336     9.8'
''
'------------------------------------------------------------------------'
'numpy-0.21.0'
''
'/nix/store/a8pzkmaqgckcrf6xk2wbnvydri9yhmza-numpy-0.21.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41496    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-34141    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41495    5.3'
''
'------------------------------------------------------------------------'
'oh-my-zsh-2024-10-01'
''
'/nix/store/v8hir2b38n4c3nrrparv0fa3aphly7iv-oh-my-zsh-2024-10-01.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3727     9.8'
''
'------------------------------------------------------------------------'
'openmp-19.1.5'
''
'/nix/store/74c2kr384whffqcdhiz9n8j8lzdmgn4h-openmp-19.1.5.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-26345    7.3'
''
'------------------------------------------------------------------------'
'quote-1.0.36'
''
'/nix/store/dv7ihfnrqjcd2h7hjww3aab5c385bp4d-quote-1.0.36.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-16194    5.3'
''
'------------------------------------------------------------------------'
'quote-1.0.37'
''
'/nix/store/hv8z4ap596n4ngbv7zmzmhm785ckq5aw-quote-1.0.37.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2020-16194    5.3'
''
'------------------------------------------------------------------------'
'rubygems-3.5.22'
''
'/nix/store/si4jp19hzhgrwbmdnjqaadyp5xbmr2hx-rubygems-3.5.22.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-36073    8.8'
''
'------------------------------------------------------------------------'
'safe-0.3.21'
''
'/nix/store/c12a9j91ppla3k0kh3s3ddyrszn6axf0-safe-0.3.21.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'safe-0.3.21-r1.cabal'
''
'/nix/store/76zdhw550kxl16wy38424d00cpw1fi3b-safe-0.3.21-r1.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28872    8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38164    6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-47524    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2021-44751    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40834    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-40835    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28868    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28869    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28870    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-28873    4.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33596    4.1'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33594    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33595    3.5'
'https://nvd.nist.gov/vuln/detail/CVE-2022-38163    3.5'
''
'------------------------------------------------------------------------'
'sassc-3.6.2'
''
'/nix/store/zij3zkwbnq8mvyrfigd1z8cayvsyvhbn-sassc-3.6.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-43357    7.5'
''
'------------------------------------------------------------------------'
'semver-1.0.23'
''
'/nix/store/pnm6gw9ph8grbd29k8xx0zqaii2q76b0-semver-1.0.23.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-25883    7.5'
''
'------------------------------------------------------------------------'
'shellcheck-0.10.0'
''
'/nix/store/54x1d4pllfylv4ml54242za7h3j6ms5w-shellcheck-0.10.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-28794    9.8'
''
'------------------------------------------------------------------------'
'stringbuilder-0.5.1'
''
'/nix/store/lnnx9p70rlcfz3l9fyj01shq33xmnvcn-stringbuilder-0.5.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2024-21524    9.1'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5'
''
'/nix/store/0ah3h39xvra80h118js9kl5fbk53wbwj-vault-0.3.1.5.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'vault-0.3.1.5-r8.cabal'
''
'/nix/store/jamvjkxbm8zzikqhwg8dkprp91v3amzp-vault-0.3.1.5-r8.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-24999    8.1'
'https://nvd.nist.gov/vuln/detail/CVE-2020-13223    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-27400    7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6337     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0620     6.7'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0665     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2024-8365     6.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-41802    5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2121     5.4'
'https://nvd.nist.gov/vuln/detail/CVE-2020-25594    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-3024     5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-38554    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-41316    5.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-25000    4.7'
''
'------------------------------------------------------------------------'
'warp-3.3.31'
''
'/nix/store/m94hsd04gq5f38y4079c85sqah54ygyc-warp-3.3.31.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3320     9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3512     8.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4428     8.0'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2145     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-2225     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0652     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1412     7.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-1862     7.3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-2754     6.8'
'https://nvd.nist.gov/vuln/detail/CVE-2022-4457     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0238     5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-0654     3.7'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2'
''
'/nix/store/b0y3k79gvsz9q6m7vlgr3js0y5aknh2p-yaml-0.11.11.2.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yaml-0.11.11.2-r2.cabal'
''
'/nix/store/d602vpm75y1kdf7dm9nsyr2b0kh8ww52-yaml-0.11.11.2-r2.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-3064     7.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-4235     5.5'
''
'------------------------------------------------------------------------'
'yasm-1.3.0'
''
'/nix/store/wmd7j8gp6imj0wj94n7hqm7ghlj1jqi6-yasm-1.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33454    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33455    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33456    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33457    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33458    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33459    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33460    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33461    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33462    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33463    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33464    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33465    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33466    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33467    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2021-33468    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-30402    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31972    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31973    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31974    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-51258    5.5'
'https://nvd.nist.gov/vuln/detail/CVE-2023-31975    3.3'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0'
''
'/nix/store/cz7lnal28jgi2p3hz69hva8s7wk33s1q-zlib-0.6.3.0.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-0.6.3.0-r5.cabal'
''
'/nix/store/s84dhqcia6wb4k84c76cwsxcsvfywl67-zlib-0.6.3.0-r5.cabal.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2022-37434    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-45853    9.8'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'------------------------------------------------------------------------'
'zlib-1.3.1'
''
'/nix/store/crqs1kmmi37ysda80hn6vc8k3hzb7gij-zlib-1.3.1.drv'
'CVE                                                CVSSv3'
'https://nvd.nist.gov/vuln/detail/CVE-2023-6992     5.5'
''
'use --show-whitelisted to see derivations with only whitelisted CVEs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants