CVE-2026-0907 created 7 hours ago Incorrect security UI in Split View in Google Chrome prior … Incorrect security UI in Split View in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) Affected products Chrome <144.0.7559.59 Matching in nixpkgs pkgs.netflix Open Netflix in Google Chrome app mode nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin pkgs.chromedriver WebDriver server for running Selenium tests on Chrome nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.mkchromecast Cast macOS and Linux Audio/Video to your Google Cast and Sonos Devices nixos-unstable 2022-10-31 nixpkgs-unstable 2022-10-31 nixos-unstable-small 2022-10-31 nixos-25.05 2022-10-31 nixos-25.05-small 2022-10-31 nixpkgs-25.05-darwin 2022-10-31 pkgs.chrome-export Scripts to save Google Chrome's bookmarks and history as HTML bookmarks files nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2 pkgs.go-chromecast CLI for Google Chromecast, Home devices and Cast Groups nixos-unstable 0.3.4 nixpkgs-unstable 0.3.4 nixos-unstable-small 0.3.4 nixos-25.05 0.3.4 nixos-25.05-small 0.3.4 nixpkgs-25.05-darwin 0.3.4 pkgs.google-chrome Freeware web browser developed by Google nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.chrome-token-signing Chrome and Firefox extension for signing with your eID on the web nixos-unstable 1.1.5 nixpkgs-unstable 1.1.5 nixos-unstable-small 1.1.5 nixos-25.05 1.1.5 nixos-25.05-small 1.1.5 nixpkgs-25.05-darwin 1.1.5 pkgs.chrome-pak-customizer Simple batch tool to customize pak files in chrome or chromium-based browser nixos-unstable 2.0-unstable-2021-06-24 nixpkgs-unstable 2.0-unstable-2021-06-24 nixos-unstable-small 2.0-unstable-2021-06-24 nixos-25.05 2.0-unstable-2021-06-24 nixos-25.05-small 2.0-unstable-2021-06-24 nixpkgs-25.05-darwin 2.0-unstable-2021-06-24 pkgs.curl-impersonate-chrome Special build of curl that can impersonate Chrome & Firefox nixos-unstable 1.2.0 nixpkgs-unstable 1.2.0 nixos-unstable-small 1.2.0 nixos-25.05 1.2.0 nixos-25.05-small 1.2.0 nixpkgs-25.05-darwin 1.2.0 pkgs.undetected-chromedriver Custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.electron-chromedriver_33 WebDriver server for running Selenium tests on Chrome nixos-25.05 33.4.11 nixos-25.05-small 33.4.11 nixpkgs-25.05-darwin 33.4.11 pkgs.electron-chromedriver_34 WebDriver server for running Selenium tests on Chrome nixos-25.05 34.5.8 nixos-25.05-small 34.5.8 nixpkgs-25.05-darwin 34.5.8 pkgs.electron-chromedriver_35 WebDriver server for running Selenium tests on Chrome nixos-25.05 35.7.5 nixos-25.05-small 35.7.5 nixpkgs-25.05-darwin 35.7.5 pkgs.electron-chromedriver_36 WebDriver server for running Selenium tests on Chrome nixos-unstable 36.9.5 nixpkgs-unstable 36.9.5 nixos-unstable-small 36.9.5 nixos-25.05 36.9.5 nixos-25.05-small 36.9.5 nixpkgs-25.05-darwin 36.9.5 pkgs.electron-chromedriver_37 WebDriver server for running Selenium tests on Chrome nixos-unstable 37.10.2 nixpkgs-unstable 37.10.2 nixos-unstable-small 37.10.2 nixos-25.05 37.10.2 nixos-25.05-small 37.10.2 nixpkgs-25.05-darwin 37.10.2 pkgs.electron-chromedriver_38 WebDriver server for running Selenium tests on Chrome nixos-unstable 38.7.1 nixpkgs-unstable 38.7.1 nixos-unstable-small 38.7.1 nixos-25.05 38.7.1 nixos-25.05-small 38.7.1 nixpkgs-25.05-darwin 38.7.1 pkgs.electron-chromedriver_39 WebDriver server for running Selenium tests on Chrome nixos-unstable 39.2.3 nixpkgs-unstable 39.2.3 nixos-unstable-small 39.2.3 nixos-25.05 39.2.3 nixos-25.05-small 39.2.3 nixpkgs-25.05-darwin 39.2.3 pkgs.xorg.xf86videoopenchrome None nixos-unstable 0.6.0 nixpkgs-unstable 0.6.0 nixos-unstable-small 0.6.0 nixos-25.05 0.6.0 nixos-25.05-small 0.6.0 nixpkgs-25.05-darwin 0.6.0 pkgs.ocamlPackages.chrome-trace Chrome trace event generation library nixos-unstable 3.20.2 nixpkgs-unstable 3.20.2 nixos-unstable-small 3.20.2 pkgs.noto-fonts-monochrome-emoji Monochrome emoji font nixos-unstable 3.000 nixpkgs-unstable 3.000 nixos-unstable-small 3.000 nixos-25.05 3.000 nixos-25.05-small 3.000 nixpkgs-25.05-darwin 3.000 pkgs.python312Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7 pkgs.python313Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7 pkgs.python312Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5 pkgs.python313Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5 pkgs.grafanaPlugins.ventura-psychrometric-panel Grafana plugin to display air conditions on a psychrometric chart nixos-unstable 5.0.4 nixpkgs-unstable 5.0.4 nixos-unstable-small 5.0.4 Package maintainers: 15 @bdesham Benjamin Esham <benjamin@esham.io> @UlyssesZh Ulysses Zhan <ulysseszhan@gmail.com> @mmahut Marek Mahut <marek.mahut@gmail.com> @emilylange Emily Lange <nix@emilylange.de> @networkException networkException <nix@nwex.de> @GGG-KILLER GGG <gggkiller2@gmail.com> @yayayayaka Yaya <github@uwu.is> @liam-murphy14 Liam Murphy <liam.murphy137@gmail.com> @zi3m5f zi3m5f <k7n3o3a6f@mozmail.com> @johnrtitor Masum Reza <masumrezarock100@gmail.com> @Shou Benedict Aas <x+g@shou.io> @roberth Robert Hensing <nixpkgs@roberthensing.nl> @nicoonoclaste nicoo <nicoo@debian.org> @abbradar Nikolay Amiantov <ab@fmap.me> @nagisa Simonas Kazlauskas <nixpkgs@kazlauskas.me>
pkgs.netflix Open Netflix in Google Chrome app mode nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin
pkgs.chromedriver WebDriver server for running Selenium tests on Chrome nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.mkchromecast Cast macOS and Linux Audio/Video to your Google Cast and Sonos Devices nixos-unstable 2022-10-31 nixpkgs-unstable 2022-10-31 nixos-unstable-small 2022-10-31 nixos-25.05 2022-10-31 nixos-25.05-small 2022-10-31 nixpkgs-25.05-darwin 2022-10-31
pkgs.chrome-export Scripts to save Google Chrome's bookmarks and history as HTML bookmarks files nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2
pkgs.go-chromecast CLI for Google Chromecast, Home devices and Cast Groups nixos-unstable 0.3.4 nixpkgs-unstable 0.3.4 nixos-unstable-small 0.3.4 nixos-25.05 0.3.4 nixos-25.05-small 0.3.4 nixpkgs-25.05-darwin 0.3.4
pkgs.google-chrome Freeware web browser developed by Google nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.chrome-token-signing Chrome and Firefox extension for signing with your eID on the web nixos-unstable 1.1.5 nixpkgs-unstable 1.1.5 nixos-unstable-small 1.1.5 nixos-25.05 1.1.5 nixos-25.05-small 1.1.5 nixpkgs-25.05-darwin 1.1.5
pkgs.chrome-pak-customizer Simple batch tool to customize pak files in chrome or chromium-based browser nixos-unstable 2.0-unstable-2021-06-24 nixpkgs-unstable 2.0-unstable-2021-06-24 nixos-unstable-small 2.0-unstable-2021-06-24 nixos-25.05 2.0-unstable-2021-06-24 nixos-25.05-small 2.0-unstable-2021-06-24 nixpkgs-25.05-darwin 2.0-unstable-2021-06-24
pkgs.curl-impersonate-chrome Special build of curl that can impersonate Chrome & Firefox nixos-unstable 1.2.0 nixpkgs-unstable 1.2.0 nixos-unstable-small 1.2.0 nixos-25.05 1.2.0 nixos-25.05-small 1.2.0 nixpkgs-25.05-darwin 1.2.0
pkgs.undetected-chromedriver Custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.electron-chromedriver_33 WebDriver server for running Selenium tests on Chrome nixos-25.05 33.4.11 nixos-25.05-small 33.4.11 nixpkgs-25.05-darwin 33.4.11
pkgs.electron-chromedriver_34 WebDriver server for running Selenium tests on Chrome nixos-25.05 34.5.8 nixos-25.05-small 34.5.8 nixpkgs-25.05-darwin 34.5.8
pkgs.electron-chromedriver_35 WebDriver server for running Selenium tests on Chrome nixos-25.05 35.7.5 nixos-25.05-small 35.7.5 nixpkgs-25.05-darwin 35.7.5
pkgs.electron-chromedriver_36 WebDriver server for running Selenium tests on Chrome nixos-unstable 36.9.5 nixpkgs-unstable 36.9.5 nixos-unstable-small 36.9.5 nixos-25.05 36.9.5 nixos-25.05-small 36.9.5 nixpkgs-25.05-darwin 36.9.5
pkgs.electron-chromedriver_37 WebDriver server for running Selenium tests on Chrome nixos-unstable 37.10.2 nixpkgs-unstable 37.10.2 nixos-unstable-small 37.10.2 nixos-25.05 37.10.2 nixos-25.05-small 37.10.2 nixpkgs-25.05-darwin 37.10.2
pkgs.electron-chromedriver_38 WebDriver server for running Selenium tests on Chrome nixos-unstable 38.7.1 nixpkgs-unstable 38.7.1 nixos-unstable-small 38.7.1 nixos-25.05 38.7.1 nixos-25.05-small 38.7.1 nixpkgs-25.05-darwin 38.7.1
pkgs.electron-chromedriver_39 WebDriver server for running Selenium tests on Chrome nixos-unstable 39.2.3 nixpkgs-unstable 39.2.3 nixos-unstable-small 39.2.3 nixos-25.05 39.2.3 nixos-25.05-small 39.2.3 nixpkgs-25.05-darwin 39.2.3
pkgs.xorg.xf86videoopenchrome None nixos-unstable 0.6.0 nixpkgs-unstable 0.6.0 nixos-unstable-small 0.6.0 nixos-25.05 0.6.0 nixos-25.05-small 0.6.0 nixpkgs-25.05-darwin 0.6.0
pkgs.ocamlPackages.chrome-trace Chrome trace event generation library nixos-unstable 3.20.2 nixpkgs-unstable 3.20.2 nixos-unstable-small 3.20.2
pkgs.noto-fonts-monochrome-emoji Monochrome emoji font nixos-unstable 3.000 nixpkgs-unstable 3.000 nixos-unstable-small 3.000 nixos-25.05 3.000 nixos-25.05-small 3.000 nixpkgs-25.05-darwin 3.000
pkgs.python312Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7
pkgs.python313Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7
pkgs.python312Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5
pkgs.python313Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5
pkgs.grafanaPlugins.ventura-psychrometric-panel Grafana plugin to display air conditions on a psychrometric chart nixos-unstable 5.0.4 nixpkgs-unstable 5.0.4 nixos-unstable-small 5.0.4
CVE-2025-66019 created 7 hours ago pypdf manipulated LZWDecode streams can exhaust RAM pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0. Affected products pypdf ==< 6.4.0 Matching in nixpkgs pkgs.capypdf Fully color managed PDF generation library nixos-unstable 0.18.0 nixpkgs-unstable 0.18.0 nixos-unstable-small 0.18.0 nixos-25.05 0.16.0 nixos-25.05-small 0.16.0 nixpkgs-25.05-darwin 0.16.0 pkgs.python312Packages.pypdf Pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files nixos-unstable 6.1.0 nixpkgs-unstable 6.1.0 nixos-unstable-small 6.3.0 nixos-25.05 5.4.0 nixos-25.05-small 5.4.0 nixpkgs-25.05-darwin 5.4.0 pkgs.python313Packages.pypdf Pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files nixos-unstable 6.1.0 nixpkgs-unstable 6.1.0 nixos-unstable-small 6.3.0 nixos-25.05 5.4.0 nixos-25.05-small 5.4.0 nixpkgs-25.05-darwin 5.4.0 pkgs.python312Packages.pypdf2 Pure-Python library built as a PDF toolkit nixos-unstable pypdf2-3.0.1 nixpkgs-unstable pypdf2-3.0.1 nixos-unstable-small pypdf2-3.0.1 nixos-25.05 pypdf2-3.0.1 nixos-25.05-small pypdf2-3.0.1 nixpkgs-25.05-darwin pypdf2-3.0.1 pkgs.python312Packages.pypdf3 Pure-Python library built as a PDF toolkit nixos-unstable pypdf3-1.0.6 nixpkgs-unstable pypdf3-1.0.6 nixos-unstable-small pypdf3-1.0.6 nixos-25.05 pypdf3-1.0.6 nixos-25.05-small pypdf3-1.0.6 nixpkgs-25.05-darwin pypdf3-1.0.6 pkgs.python313Packages.pypdf2 Pure-Python library built as a PDF toolkit nixos-unstable pypdf2-3.0.1 nixpkgs-unstable pypdf2-3.0.1 nixos-unstable-small pypdf2-3.0.1 nixos-25.05 pypdf2-3.0.1 nixos-25.05-small pypdf2-3.0.1 nixpkgs-25.05-darwin pypdf2-3.0.1 pkgs.python313Packages.pypdf3 Pure-Python library built as a PDF toolkit nixos-unstable pypdf3-1.0.6 nixpkgs-unstable pypdf3-1.0.6 nixos-unstable-small pypdf3-1.0.6 nixos-25.05 pypdf3-1.0.6 nixos-25.05-small pypdf3-1.0.6 nixpkgs-25.05-darwin pypdf3-1.0.6 pkgs.python312Packages.pypdfium2 Python bindings to PDFium nixos-unstable pypdfium2-5.0.0 nixpkgs-unstable pypdfium2-5.0.0 nixos-unstable-small pypdfium2-5.1.0 nixos-25.05 pypdfium2-4.30.1 nixos-25.05-small pypdfium2-4.30.1 nixpkgs-25.05-darwin pypdfium2-4.30.1 pkgs.python313Packages.pypdfium2 Python bindings to PDFium nixos-unstable pypdfium2-5.0.0 nixpkgs-unstable pypdfium2-5.0.0 nixos-unstable-small pypdfium2-5.1.0 nixos-25.05 pypdfium2-4.30.1 nixos-25.05-small pypdfium2-4.30.1 nixpkgs-25.05-darwin pypdfium2-4.30.1 Package maintainers: 5 @jtojnar Jan Tojnar <jtojnar@gmail.com> @javaes Jan van Esdonk <jan+dev@vanesdonk.de> @desiderius Didier J. Devroye <didier@devroye.name> @ambroisie Bruno BELANYI <bruno.nixpkgs@belanyi.fr> @booxter Ihar Hrachyshka <ihar.hrachyshka@gmail.com>
pkgs.capypdf Fully color managed PDF generation library nixos-unstable 0.18.0 nixpkgs-unstable 0.18.0 nixos-unstable-small 0.18.0 nixos-25.05 0.16.0 nixos-25.05-small 0.16.0 nixpkgs-25.05-darwin 0.16.0
pkgs.python312Packages.pypdf Pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files nixos-unstable 6.1.0 nixpkgs-unstable 6.1.0 nixos-unstable-small 6.3.0 nixos-25.05 5.4.0 nixos-25.05-small 5.4.0 nixpkgs-25.05-darwin 5.4.0
pkgs.python313Packages.pypdf Pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files nixos-unstable 6.1.0 nixpkgs-unstable 6.1.0 nixos-unstable-small 6.3.0 nixos-25.05 5.4.0 nixos-25.05-small 5.4.0 nixpkgs-25.05-darwin 5.4.0
pkgs.python312Packages.pypdf2 Pure-Python library built as a PDF toolkit nixos-unstable pypdf2-3.0.1 nixpkgs-unstable pypdf2-3.0.1 nixos-unstable-small pypdf2-3.0.1 nixos-25.05 pypdf2-3.0.1 nixos-25.05-small pypdf2-3.0.1 nixpkgs-25.05-darwin pypdf2-3.0.1
pkgs.python312Packages.pypdf3 Pure-Python library built as a PDF toolkit nixos-unstable pypdf3-1.0.6 nixpkgs-unstable pypdf3-1.0.6 nixos-unstable-small pypdf3-1.0.6 nixos-25.05 pypdf3-1.0.6 nixos-25.05-small pypdf3-1.0.6 nixpkgs-25.05-darwin pypdf3-1.0.6
pkgs.python313Packages.pypdf2 Pure-Python library built as a PDF toolkit nixos-unstable pypdf2-3.0.1 nixpkgs-unstable pypdf2-3.0.1 nixos-unstable-small pypdf2-3.0.1 nixos-25.05 pypdf2-3.0.1 nixos-25.05-small pypdf2-3.0.1 nixpkgs-25.05-darwin pypdf2-3.0.1
pkgs.python313Packages.pypdf3 Pure-Python library built as a PDF toolkit nixos-unstable pypdf3-1.0.6 nixpkgs-unstable pypdf3-1.0.6 nixos-unstable-small pypdf3-1.0.6 nixos-25.05 pypdf3-1.0.6 nixos-25.05-small pypdf3-1.0.6 nixpkgs-25.05-darwin pypdf3-1.0.6
pkgs.python312Packages.pypdfium2 Python bindings to PDFium nixos-unstable pypdfium2-5.0.0 nixpkgs-unstable pypdfium2-5.0.0 nixos-unstable-small pypdfium2-5.1.0 nixos-25.05 pypdfium2-4.30.1 nixos-25.05-small pypdfium2-4.30.1 nixpkgs-25.05-darwin pypdfium2-4.30.1
pkgs.python313Packages.pypdfium2 Python bindings to PDFium nixos-unstable pypdfium2-5.0.0 nixpkgs-unstable pypdfium2-5.0.0 nixos-unstable-small pypdfium2-5.1.0 nixos-25.05 pypdfium2-4.30.1 nixos-25.05-small pypdfium2-4.30.1 nixpkgs-25.05-darwin pypdfium2-4.30.1
CVE-2025-11468 created 7 hours ago Folding email comments of unfoldable characters doesn't preserve parenthesis When folding a long comment in an email header containing exclusively unfoldable characters, the parenthesis would not be preserved. This could be used for injecting headers into email messages where addresses are user-controlled and not sanitized. Affected products CPython <3.15.0 Matching in nixpkgs pkgs.haskellPackages.cpython Bindings for libpython nixos-unstable 3.9.0 nixpkgs-unstable 3.9.0 nixos-unstable-small 3.9.0 nixos-25.05 3.9.0 nixos-25.05-small 3.9.0 nixpkgs-25.05-darwin 3.9.0 Package maintainers: 1 @sheepforce Phillip Seeber <phillip.seeber@googlemail.com>
pkgs.haskellPackages.cpython Bindings for libpython nixos-unstable 3.9.0 nixpkgs-unstable 3.9.0 nixos-unstable-small 3.9.0 nixos-25.05 3.9.0 nixos-25.05-small 3.9.0 nixpkgs-25.05-darwin 3.9.0
CVE-2025-13151 created 7 hours ago CVE-2025-13151 Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string. Affected products libtasn1 =<4.20.0 Matching in nixpkgs pkgs.libtasn1 ASN.1 library nixos-unstable 4.20.0 nixpkgs-unstable 4.20.0 nixos-unstable-small 4.20.0 nixos-25.05 4.20.0 nixos-25.05-small 4.20.0 nixpkgs-25.05-darwin 4.20.0
pkgs.libtasn1 ASN.1 library nixos-unstable 4.20.0 nixpkgs-unstable 4.20.0 nixos-unstable-small 4.20.0 nixos-25.05 4.20.0 nixos-25.05-small 4.20.0 nixpkgs-25.05-darwin 4.20.0
CVE-2026-0933 created 7 hours ago OS Command Injection in `wrangler pages deploy` SummaryA command injection vulnerability (CWE-78) has been found to exist in the `wrangler pages deploy` command. The issue occurs because the `--commit-hash` parameter is passed directly to a shell command without proper validation or sanitization, allowing an attacker with control of `--commit-hash` to execute arbitrary commands on the system running Wrangler. Root causeThe commitHash variable, derived from user input via the --commit-hash CLI argument, is interpolated directly into a shell command using template literals (e.g., execSync(`git show -s --format=%B ${commitHash}`)). Shell metacharacters are interpreted by the shell, enabling command execution. ImpactThis vulnerability is generally hard to exploit, as it requires --commit-hash to be attacker controlled. The vulnerability primarily affects CI/CD environments where `wrangler pages deploy` is used in automated pipelines and the --commit-hash parameter is populated from external, potentially untrusted sources. An attacker could exploit this to: * Run any shell command. * Exfiltrate environment variables. * Compromise the CI runner to install backdoors or modify build artifacts. Credits Disclosed responsibly by kny4hacker. Mitigation * Wrangler v4 users are requested to upgrade to Wrangler v4.59.1 or higher. * Wrangler v3 users are requested to upgrade to Wrangler v3.114.17 or higher. * Users on Wrangler v2 (EOL) should upgrade to a supported major version. Affected products Wrangler =<v4.59.0 ==v2.0.15+ =<v3.114.16 Matching in nixpkgs pkgs.wrangler Command-line interface for all things Cloudflare Workers nixos-unstable 4.48.0 nixpkgs-unstable 4.48.0 nixos-unstable-small 4.50.0 nixos-25.05 4.17.0 nixos-25.05-small 4.17.0 nixpkgs-25.05-darwin 4.17.0 pkgs.wrangler_1 CLI tool designed for folks who are interested in using Cloudflare Workers nixos-unstable 1.21.0 nixpkgs-unstable 1.21.0 nixos-unstable-small 1.21.0 nixos-25.05 1.21.0 nixos-25.05-small 1.21.0 nixpkgs-25.05-darwin 1.21.0 pkgs.python312Packages.awswrangler Pandas on AWS nixos-unstable 3.14.0 nixpkgs-unstable 3.14.0 nixos-unstable-small 3.14.0 nixos-25.05 3.11.0 nixos-25.05-small 3.11.0 nixpkgs-25.05-darwin 3.11.0 pkgs.python313Packages.awswrangler Pandas on AWS nixos-unstable 3.14.0 nixpkgs-unstable 3.14.0 nixos-unstable-small 3.14.0 nixos-25.05 3.11.0 nixos-25.05-small 3.11.0 nixpkgs-25.05-darwin 3.11.0 pkgs.vscode-extensions.ms-toolsai.datawrangler Data viewing, cleaning and preparation for tabular datasets nixos-unstable 1.22.0 nixpkgs-unstable 1.22.0 nixos-unstable-small 1.22.0 nixos-25.05 1.21.1 nixos-25.05-small 1.21.1 nixpkgs-25.05-darwin 1.21.1 Package maintainers: 7 @mcwitt Matt Wittmann <mcwitt@gmail.com> @katanallama katanallama @ezrizhu Ezri Zhu <me@ezrizhu.com> @ryand56 Ryan Omasta <git@ryand.ca> @seanrmurphy Sean Murphy <sean@gopaddy.ch> @dezren39 Drewry Pope <drewrypope@gmail.com> @Br1ght0ne Oleksii Filonenko <brightone@protonmail.com>
pkgs.wrangler Command-line interface for all things Cloudflare Workers nixos-unstable 4.48.0 nixpkgs-unstable 4.48.0 nixos-unstable-small 4.50.0 nixos-25.05 4.17.0 nixos-25.05-small 4.17.0 nixpkgs-25.05-darwin 4.17.0
pkgs.wrangler_1 CLI tool designed for folks who are interested in using Cloudflare Workers nixos-unstable 1.21.0 nixpkgs-unstable 1.21.0 nixos-unstable-small 1.21.0 nixos-25.05 1.21.0 nixos-25.05-small 1.21.0 nixpkgs-25.05-darwin 1.21.0
pkgs.python312Packages.awswrangler Pandas on AWS nixos-unstable 3.14.0 nixpkgs-unstable 3.14.0 nixos-unstable-small 3.14.0 nixos-25.05 3.11.0 nixos-25.05-small 3.11.0 nixpkgs-25.05-darwin 3.11.0
pkgs.python313Packages.awswrangler Pandas on AWS nixos-unstable 3.14.0 nixpkgs-unstable 3.14.0 nixos-unstable-small 3.14.0 nixos-25.05 3.11.0 nixos-25.05-small 3.11.0 nixpkgs-25.05-darwin 3.11.0
pkgs.vscode-extensions.ms-toolsai.datawrangler Data viewing, cleaning and preparation for tabular datasets nixos-unstable 1.22.0 nixpkgs-unstable 1.22.0 nixos-unstable-small 1.22.0 nixos-25.05 1.21.1 nixos-25.05-small 1.21.1 nixpkgs-25.05-darwin 1.21.1
CVE-2026-0900 created 7 hours ago Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59 … Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High) Affected products Chrome <144.0.7559.59 Matching in nixpkgs pkgs.netflix Open Netflix in Google Chrome app mode nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin pkgs.chromedriver WebDriver server for running Selenium tests on Chrome nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.mkchromecast Cast macOS and Linux Audio/Video to your Google Cast and Sonos Devices nixos-unstable 2022-10-31 nixpkgs-unstable 2022-10-31 nixos-unstable-small 2022-10-31 nixos-25.05 2022-10-31 nixos-25.05-small 2022-10-31 nixpkgs-25.05-darwin 2022-10-31 pkgs.chrome-export Scripts to save Google Chrome's bookmarks and history as HTML bookmarks files nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2 pkgs.go-chromecast CLI for Google Chromecast, Home devices and Cast Groups nixos-unstable 0.3.4 nixpkgs-unstable 0.3.4 nixos-unstable-small 0.3.4 nixos-25.05 0.3.4 nixos-25.05-small 0.3.4 nixpkgs-25.05-darwin 0.3.4 pkgs.google-chrome Freeware web browser developed by Google nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.chrome-token-signing Chrome and Firefox extension for signing with your eID on the web nixos-unstable 1.1.5 nixpkgs-unstable 1.1.5 nixos-unstable-small 1.1.5 nixos-25.05 1.1.5 nixos-25.05-small 1.1.5 nixpkgs-25.05-darwin 1.1.5 pkgs.chrome-pak-customizer Simple batch tool to customize pak files in chrome or chromium-based browser nixos-unstable 2.0-unstable-2021-06-24 nixpkgs-unstable 2.0-unstable-2021-06-24 nixos-unstable-small 2.0-unstable-2021-06-24 nixos-25.05 2.0-unstable-2021-06-24 nixos-25.05-small 2.0-unstable-2021-06-24 nixpkgs-25.05-darwin 2.0-unstable-2021-06-24 pkgs.curl-impersonate-chrome Special build of curl that can impersonate Chrome & Firefox nixos-unstable 1.2.0 nixpkgs-unstable 1.2.0 nixos-unstable-small 1.2.0 nixos-25.05 1.2.0 nixos-25.05-small 1.2.0 nixpkgs-25.05-darwin 1.2.0 pkgs.undetected-chromedriver Custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175 pkgs.electron-chromedriver_33 WebDriver server for running Selenium tests on Chrome nixos-25.05 33.4.11 nixos-25.05-small 33.4.11 nixpkgs-25.05-darwin 33.4.11 pkgs.electron-chromedriver_34 WebDriver server for running Selenium tests on Chrome nixos-25.05 34.5.8 nixos-25.05-small 34.5.8 nixpkgs-25.05-darwin 34.5.8 pkgs.electron-chromedriver_35 WebDriver server for running Selenium tests on Chrome nixos-25.05 35.7.5 nixos-25.05-small 35.7.5 nixpkgs-25.05-darwin 35.7.5 pkgs.electron-chromedriver_36 WebDriver server for running Selenium tests on Chrome nixos-unstable 36.9.5 nixpkgs-unstable 36.9.5 nixos-unstable-small 36.9.5 nixos-25.05 36.9.5 nixos-25.05-small 36.9.5 nixpkgs-25.05-darwin 36.9.5 pkgs.electron-chromedriver_37 WebDriver server for running Selenium tests on Chrome nixos-unstable 37.10.2 nixpkgs-unstable 37.10.2 nixos-unstable-small 37.10.2 nixos-25.05 37.10.2 nixos-25.05-small 37.10.2 nixpkgs-25.05-darwin 37.10.2 pkgs.electron-chromedriver_38 WebDriver server for running Selenium tests on Chrome nixos-unstable 38.7.1 nixpkgs-unstable 38.7.1 nixos-unstable-small 38.7.1 nixos-25.05 38.7.1 nixos-25.05-small 38.7.1 nixpkgs-25.05-darwin 38.7.1 pkgs.electron-chromedriver_39 WebDriver server for running Selenium tests on Chrome nixos-unstable 39.2.3 nixpkgs-unstable 39.2.3 nixos-unstable-small 39.2.3 nixos-25.05 39.2.3 nixos-25.05-small 39.2.3 nixpkgs-25.05-darwin 39.2.3 pkgs.xorg.xf86videoopenchrome None nixos-unstable 0.6.0 nixpkgs-unstable 0.6.0 nixos-unstable-small 0.6.0 nixos-25.05 0.6.0 nixos-25.05-small 0.6.0 nixpkgs-25.05-darwin 0.6.0 pkgs.ocamlPackages.chrome-trace Chrome trace event generation library nixos-unstable 3.20.2 nixpkgs-unstable 3.20.2 nixos-unstable-small 3.20.2 pkgs.noto-fonts-monochrome-emoji Monochrome emoji font nixos-unstable 3.000 nixpkgs-unstable 3.000 nixos-unstable-small 3.000 nixos-25.05 3.000 nixos-25.05-small 3.000 nixpkgs-25.05-darwin 3.000 pkgs.python312Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7 pkgs.python313Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7 pkgs.python312Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5 pkgs.python313Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5 pkgs.grafanaPlugins.ventura-psychrometric-panel Grafana plugin to display air conditions on a psychrometric chart nixos-unstable 5.0.4 nixpkgs-unstable 5.0.4 nixos-unstable-small 5.0.4 Package maintainers: 15 @bdesham Benjamin Esham <benjamin@esham.io> @UlyssesZh Ulysses Zhan <ulysseszhan@gmail.com> @mmahut Marek Mahut <marek.mahut@gmail.com> @emilylange Emily Lange <nix@emilylange.de> @networkException networkException <nix@nwex.de> @GGG-KILLER GGG <gggkiller2@gmail.com> @yayayayaka Yaya <github@uwu.is> @liam-murphy14 Liam Murphy <liam.murphy137@gmail.com> @zi3m5f zi3m5f <k7n3o3a6f@mozmail.com> @johnrtitor Masum Reza <masumrezarock100@gmail.com> @Shou Benedict Aas <x+g@shou.io> @roberth Robert Hensing <nixpkgs@roberthensing.nl> @nicoonoclaste nicoo <nicoo@debian.org> @abbradar Nikolay Amiantov <ab@fmap.me> @nagisa Simonas Kazlauskas <nixpkgs@kazlauskas.me>
pkgs.netflix Open Netflix in Google Chrome app mode nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin
pkgs.chromedriver WebDriver server for running Selenium tests on Chrome nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.mkchromecast Cast macOS and Linux Audio/Video to your Google Cast and Sonos Devices nixos-unstable 2022-10-31 nixpkgs-unstable 2022-10-31 nixos-unstable-small 2022-10-31 nixos-25.05 2022-10-31 nixos-25.05-small 2022-10-31 nixpkgs-25.05-darwin 2022-10-31
pkgs.chrome-export Scripts to save Google Chrome's bookmarks and history as HTML bookmarks files nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2
pkgs.go-chromecast CLI for Google Chromecast, Home devices and Cast Groups nixos-unstable 0.3.4 nixpkgs-unstable 0.3.4 nixos-unstable-small 0.3.4 nixos-25.05 0.3.4 nixos-25.05-small 0.3.4 nixpkgs-25.05-darwin 0.3.4
pkgs.google-chrome Freeware web browser developed by Google nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.chrome-token-signing Chrome and Firefox extension for signing with your eID on the web nixos-unstable 1.1.5 nixpkgs-unstable 1.1.5 nixos-unstable-small 1.1.5 nixos-25.05 1.1.5 nixos-25.05-small 1.1.5 nixpkgs-25.05-darwin 1.1.5
pkgs.chrome-pak-customizer Simple batch tool to customize pak files in chrome or chromium-based browser nixos-unstable 2.0-unstable-2021-06-24 nixpkgs-unstable 2.0-unstable-2021-06-24 nixos-unstable-small 2.0-unstable-2021-06-24 nixos-25.05 2.0-unstable-2021-06-24 nixos-25.05-small 2.0-unstable-2021-06-24 nixpkgs-25.05-darwin 2.0-unstable-2021-06-24
pkgs.curl-impersonate-chrome Special build of curl that can impersonate Chrome & Firefox nixos-unstable 1.2.0 nixpkgs-unstable 1.2.0 nixos-unstable-small 1.2.0 nixos-25.05 1.2.0 nixos-25.05-small 1.2.0 nixpkgs-25.05-darwin 1.2.0
pkgs.undetected-chromedriver Custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 142.0.7444.175 nixpkgs-unstable 142.0.7444.175 nixos-unstable-small 142.0.7444.175 nixos-25.05 142.0.7444.175 nixos-25.05-small 142.0.7444.175 nixpkgs-25.05-darwin 142.0.7444.175
pkgs.electron-chromedriver_33 WebDriver server for running Selenium tests on Chrome nixos-25.05 33.4.11 nixos-25.05-small 33.4.11 nixpkgs-25.05-darwin 33.4.11
pkgs.electron-chromedriver_34 WebDriver server for running Selenium tests on Chrome nixos-25.05 34.5.8 nixos-25.05-small 34.5.8 nixpkgs-25.05-darwin 34.5.8
pkgs.electron-chromedriver_35 WebDriver server for running Selenium tests on Chrome nixos-25.05 35.7.5 nixos-25.05-small 35.7.5 nixpkgs-25.05-darwin 35.7.5
pkgs.electron-chromedriver_36 WebDriver server for running Selenium tests on Chrome nixos-unstable 36.9.5 nixpkgs-unstable 36.9.5 nixos-unstable-small 36.9.5 nixos-25.05 36.9.5 nixos-25.05-small 36.9.5 nixpkgs-25.05-darwin 36.9.5
pkgs.electron-chromedriver_37 WebDriver server for running Selenium tests on Chrome nixos-unstable 37.10.2 nixpkgs-unstable 37.10.2 nixos-unstable-small 37.10.2 nixos-25.05 37.10.2 nixos-25.05-small 37.10.2 nixpkgs-25.05-darwin 37.10.2
pkgs.electron-chromedriver_38 WebDriver server for running Selenium tests on Chrome nixos-unstable 38.7.1 nixpkgs-unstable 38.7.1 nixos-unstable-small 38.7.1 nixos-25.05 38.7.1 nixos-25.05-small 38.7.1 nixpkgs-25.05-darwin 38.7.1
pkgs.electron-chromedriver_39 WebDriver server for running Selenium tests on Chrome nixos-unstable 39.2.3 nixpkgs-unstable 39.2.3 nixos-unstable-small 39.2.3 nixos-25.05 39.2.3 nixos-25.05-small 39.2.3 nixpkgs-25.05-darwin 39.2.3
pkgs.xorg.xf86videoopenchrome None nixos-unstable 0.6.0 nixpkgs-unstable 0.6.0 nixos-unstable-small 0.6.0 nixos-25.05 0.6.0 nixos-25.05-small 0.6.0 nixpkgs-25.05-darwin 0.6.0
pkgs.ocamlPackages.chrome-trace Chrome trace event generation library nixos-unstable 3.20.2 nixpkgs-unstable 3.20.2 nixos-unstable-small 3.20.2
pkgs.noto-fonts-monochrome-emoji Monochrome emoji font nixos-unstable 3.000 nixpkgs-unstable 3.000 nixos-unstable-small 3.000 nixos-25.05 3.000 nixos-25.05-small 3.000 nixpkgs-25.05-darwin 3.000
pkgs.python312Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7
pkgs.python313Packages.pychromecast Library for Python to communicate with the Google Chromecast nixos-unstable 14.0.9 nixpkgs-unstable 14.0.9 nixos-unstable-small 14.0.9 nixos-25.05 14.0.7 nixos-25.05-small 14.0.7 nixpkgs-25.05-darwin 14.0.7
pkgs.python312Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5
pkgs.python313Packages.undetected-chromedriver Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems nixos-unstable 3.5.5 nixpkgs-unstable 3.5.5 nixos-unstable-small 3.5.5 nixos-25.05 3.5.5 nixos-25.05-small 3.5.5 nixpkgs-25.05-darwin 3.5.5
pkgs.grafanaPlugins.ventura-psychrometric-panel Grafana plugin to display air conditions on a psychrometric chart nixos-unstable 5.0.4 nixpkgs-unstable 5.0.4 nixos-unstable-small 5.0.4
CVE-2025-12110 created 7 hours ago Keycloak: org.keycloak:keycloak-services: user can refresh offline session even after client's offline_access scope was removed A flaw was found in Keycloak. An offline session continues to be valid when the offline_access scope is removed from the client. The refresh token is accepted and you can continue to request new tokens for the session. As it can lead to a situation where an administrator removes the scope, and assumes that offline sessions are no longer available, but they are. Affected products keycloak <26.4.3 keycloak-server rhbk/keycloak-rhel9 * rhbk/keycloak-rhel9-operator * rhbk/keycloak-operator-bundle * Red Hat build of Keycloak 26.2.11 Matching in nixpkgs pkgs.keycloak Identity and access management for modern applications and services nixos-unstable 26.4.5 nixpkgs-unstable 26.4.5 nixos-unstable-small 26.4.5 nixos-25.05 26.4.5 nixos-25.05-small 26.4.5 nixpkgs-25.05-darwin 26.4.5 pkgs.terraform-providers.keycloak None nixos-25.05 5.2.0 nixos-25.05-small 5.2.0 nixpkgs-25.05-darwin 5.2.0 pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-unstable 4.0.0 nixpkgs-unstable 4.0.0 nixos-unstable-small 4.0.0 nixos-25.05 4.0.0 nixos-25.05-small 4.0.0 nixpkgs-25.05-darwin 4.0.0 pkgs.python313Packages.python-keycloak Provides access to the Keycloak API nixos-unstable 4.0.0 nixpkgs-unstable 4.0.0 nixos-unstable-small 4.0.0 nixos-25.05 4.0.0 nixos-25.05-small 4.0.0 nixpkgs-25.05-darwin 4.0.0 pkgs.terraform-providers.keycloak_keycloak None nixos-unstable 5.5.0 nixpkgs-unstable 5.5.0 nixos-unstable-small 5.5.0 Package maintainers: 4 @ngerstle Nicholas Gerstle <ngerstle@gmail.com> @talyz Kim Lindberger <kim.lindberger@gmail.com> @leona-ya Leona Maroni <nix@leona.is> @NickCao Nick Cao <nickcao@nichi.co>
pkgs.keycloak Identity and access management for modern applications and services nixos-unstable 26.4.5 nixpkgs-unstable 26.4.5 nixos-unstable-small 26.4.5 nixos-25.05 26.4.5 nixos-25.05-small 26.4.5 nixpkgs-25.05-darwin 26.4.5
pkgs.terraform-providers.keycloak None nixos-25.05 5.2.0 nixos-25.05-small 5.2.0 nixpkgs-25.05-darwin 5.2.0
pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-unstable 4.0.0 nixpkgs-unstable 4.0.0 nixos-unstable-small 4.0.0 nixos-25.05 4.0.0 nixos-25.05-small 4.0.0 nixpkgs-25.05-darwin 4.0.0
pkgs.python313Packages.python-keycloak Provides access to the Keycloak API nixos-unstable 4.0.0 nixpkgs-unstable 4.0.0 nixos-unstable-small 4.0.0 nixos-25.05 4.0.0 nixos-25.05-small 4.0.0 nixpkgs-25.05-darwin 4.0.0
pkgs.terraform-providers.keycloak_keycloak None nixos-unstable 5.5.0 nixpkgs-unstable 5.5.0 nixos-unstable-small 5.5.0
CVE-2023-7334 created 7 hours ago Changjetong T+ <= 16.x GetStoreWarehouseByStore Deserialization RCE Changjetong T+ versions up to and including 16.x contain a .NET deserialization vulnerability in an AjaxPro endpoint that can lead to remote code execution. A remote attacker can send a crafted request to /tplus/ajaxpro/Ufida.T.CodeBehind._PriorityLevel,App_Code.ashx?method=GetStoreWarehouseByStore with a malicious JSON body that leverages deserialization of attacker-controlled .NET types to invoke arbitrary methods such as System.Diagnostics.Process.Start. This can result in execution of arbitrary commands in the context of the T+ application service account. Exploitation evidence was observed by the Shadowserver Foundation on 2023-08-19 (UTC). Affected products T+ =<16.x Matching in nixpkgs pkgs.itpp IT++ is a C++ library of mathematical, signal processing and communication classes and functions nixos-25.05 4.3.1 nixos-25.05-small 4.3.1 nixpkgs-25.05-darwin 4.3.1 pkgs.nlojet Implementation of calculation of the hadron jet cross sections nixos-unstable 4.1.3 nixpkgs-unstable 4.1.3 nixos-unstable-small 4.1.3 nixos-25.05 4.1.3 nixos-25.05-small 4.1.3 nixpkgs-25.05-darwin 4.1.3 pkgs.websocketpp C++/Boost Asio based websocket client/server library nixos-unstable 0.8.2 nixpkgs-unstable 0.8.2 nixos-unstable-small 0.8.2 nixos-25.05 0.8.2 nixos-25.05-small 0.8.2 nixpkgs-25.05-darwin 0.8.2 Package maintainers: 2 @veprbl Dmitry Kalinkin <veprbl@gmail.com> @tanneberger Tassilo Tanneberger <revol-xut@protonmail.com>
pkgs.itpp IT++ is a C++ library of mathematical, signal processing and communication classes and functions nixos-25.05 4.3.1 nixos-25.05-small 4.3.1 nixpkgs-25.05-darwin 4.3.1
pkgs.nlojet Implementation of calculation of the hadron jet cross sections nixos-unstable 4.1.3 nixpkgs-unstable 4.1.3 nixos-unstable-small 4.1.3 nixos-25.05 4.1.3 nixos-25.05-small 4.1.3 nixpkgs-25.05-darwin 4.1.3
pkgs.websocketpp C++/Boost Asio based websocket client/server library nixos-unstable 0.8.2 nixpkgs-unstable 0.8.2 nixos-unstable-small 0.8.2 nixos-25.05 0.8.2 nixos-25.05-small 0.8.2 nixpkgs-25.05-darwin 0.8.2
CVE-2025-14523 created 7 hours ago Libsoup: libsoup: duplicate host header handling causes host-parsing discrepancy (first- vs last-value wins) A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing. Common front proxies often honor the first Host: header, so this mismatch can cause vhost confusion where a proxy routes a request to one backend but the backend interprets it as destined for another host. This discrepancy enables request-smuggling style attacks, cache poisoning, or bypassing host-based access controls when an attacker supplies duplicate Host headers. Affected products libsoup * libsoup3 * Matching in nixpkgs pkgs.libsoup_3 HTTP client/server library for GNOME nixos-unstable 3.6.5 nixpkgs-unstable 3.6.5 nixos-unstable-small 3.6.5 nixos-25.05 3.6.5 nixos-25.05-small 3.6.5 nixpkgs-25.05-darwin 3.6.5 pkgs.libsoup_2_4 HTTP client/server library for GNOME nixos-unstable 2.74.3 nixpkgs-unstable 2.74.3 nixos-unstable-small 2.74.3 nixos-25.05 2.74.3 nixos-25.05-small 2.74.3 nixpkgs-25.05-darwin 2.74.3 pkgs.tests.pkg-config.defaultPkgConfigPackages."libsoup-gnome-2.4" Test whether libsoup-2.74.3 exposes pkg-config modules libsoup-gnome-2.4 nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin Package maintainers: 6 @hedning Tor Hedin Brønner <torhedinbronner@gmail.com> @jtojnar Jan Tojnar <jtojnar@gmail.com> @bobby285271 Bobby Rong <rjl931189261@126.com> @dasj19 Daniel Șerbănescu <daniel@serbanescu.dk> @lovek323 Jason O'Conal <jason@oconal.id.au> @7c6f434c Michael Raskin <7c6f434c@mail.ru>
pkgs.libsoup_3 HTTP client/server library for GNOME nixos-unstable 3.6.5 nixpkgs-unstable 3.6.5 nixos-unstable-small 3.6.5 nixos-25.05 3.6.5 nixos-25.05-small 3.6.5 nixpkgs-25.05-darwin 3.6.5
pkgs.libsoup_2_4 HTTP client/server library for GNOME nixos-unstable 2.74.3 nixpkgs-unstable 2.74.3 nixos-unstable-small 2.74.3 nixos-25.05 2.74.3 nixos-25.05-small 2.74.3 nixpkgs-25.05-darwin 2.74.3
pkgs.tests.pkg-config.defaultPkgConfigPackages."libsoup-gnome-2.4" Test whether libsoup-2.74.3 exposes pkg-config modules libsoup-gnome-2.4 nixos-unstable - nixpkgs-unstable nixos-unstable-small nixos-25.05 - nixos-25.05-small nixpkgs-25.05-darwin
CVE-2024-36600 created 7 hours ago Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to … Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to execute arbitrary code via a crafted ISO 9660 image file. Affected products n/a ==n/a libcdio ==2.1.0 Matching in nixpkgs pkgs.libcdio Library for OS-independent CD-ROM and CD image access nixos-unstable 2.2.0 nixpkgs-unstable 2.2.0 nixos-unstable-small 2.2.0 nixos-25.05 2.2.0 nixos-25.05-small 2.2.0 nixpkgs-25.05-darwin 2.2.0 pkgs.libcdio-paranoia CD paranoia on top of libcdio nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2
pkgs.libcdio Library for OS-independent CD-ROM and CD image access nixos-unstable 2.2.0 nixpkgs-unstable 2.2.0 nixos-unstable-small 2.2.0 nixos-25.05 2.2.0 nixos-25.05-small 2.2.0 nixpkgs-25.05-darwin 2.2.0
pkgs.libcdio-paranoia CD paranoia on top of libcdio nixos-unstable 2.0.2 nixpkgs-unstable 2.0.2 nixos-unstable-small 2.0.2 nixos-25.05 2.0.2 nixos-25.05-small 2.0.2 nixpkgs-25.05-darwin 2.0.2