Actix / Actix-Web
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-73051 | actix-http before 3.12.1 HTTP Request Smuggling via CL.TE | MEDIUM | 6.3 | Aug 14, 2026 |
| CVE-2026-72814 | actix-web before 0.6.10 Information Disclosure via Files | MEDIUM | 6.3 | Aug 14, 2026 |
| CVE-2026-72813 | actix-files before 0.6.10 Denial of Service via empty Range header | MEDIUM | 6.9 | Aug 14, 2026 |
| CVE-2018-25024 | An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly coerce an immutable reference into a mutable reference, leading to memo… | CRITICAL | 9.8 | Dec 26, 2021 |
| CVE-2018-25025 | An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can unsoundly extend the lifetime of a string, leading to memory corruption. | CRITICAL | 9.8 | Dec 26, 2021 |
| CVE-2018-25026 | An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can add the Send marker trait to an object that cannot be sent between threads safely… | CRITICAL | 9.8 | Dec 26, 2021 |
Showing 1 to 6 of 6 CVEs