FLAT-266BT (GHSA-mm2q-qcmx-gw4w)
Authentication mechanism absence or evasion In rustfs
6.3
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-QRACX (CVE-2026-40937)
Improper authorization control for web services In rustfs
5.9
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-ZD3HQ (CVE-2026-39360)
Improper authorization control for web services In rustfs
1.3
Low
Ecosystem: Cargo
Package: rustfs
FLAT-JGPE4 (CVE-2026-27822)
Server side cross-site scripting In rustfs
5.8
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-7E25H (CVE-2026-27607)
Authentication mechanism absence or evasion In rustfs
8.0
High
Ecosystem: Cargo
Package: rustfs
FLAT-677L3 (CVE-2026-24762)
Sensitive information stored in logs In rustfs
2.7
Low
Ecosystem: Cargo
Package: rustfs
FLAT-TRT4N (CVE-2026-21862)
Spoofing In rustfs
6.6
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-Q6NHZ (CVE-2026-22782)
Sensitive information stored in logs In rustfs
1.7
Low
Ecosystem: Cargo
Package: rustfs
FLAT-D6GZT (CVE-2026-22043)
Excessive privileges In rustfs
4.9
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-JM1K3 (CVE-2026-22042)
Improper authorization control for web services In rustfs
4.9
Medium
Ecosystem: Cargo
Package: rustfs
FLAT-XI0KP (CVE-2025-69255)
Insecure deserialization In rustfs
2.7
Low
Ecosystem: Cargo
Package: rustfs
FLAT-13VNX (CVE-2025-68705)
Lack of data validation - Path Traversal In rustfs
8.0
High
Ecosystem: Cargo
Package: rustfs
FLAT-BSE40 (CVE-2025-68926)
Sensitive information in source code In rustfs
9.1
Critical
Ecosystem: Cargo
Package: rustfs