Dismissed suggestions Untriaged suggestions Draft issues Published issues Automatically generated suggestions Create Draft to queue a suggestion for refinement. Dismiss to remove a suggestion from the queue. CVE-2023-43785 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 4 hours ago Libx11: out-of-bounds memory access in _xkbreadkeysyms() A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system. libX11 <1.8.7 * pkgs.xorg.libX11 nixos-25.05 1.8.12 nixpkgs-25.05-darwin 1.8.12 nixos-25.05-small 1.8.12 pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11 CVE-2023-43787 7.8 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 4 hours ago Libx11: integer overflow in xcreateimage() leading to a heap overflow A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges. libX11 <1.8.7 * pkgs.xorg.libX11 nixos-25.05 1.8.12 nixpkgs-25.05-darwin 1.8.12 nixos-25.05-small 1.8.12 pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11 CVE-2025-12695 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 5 hours ago Insecure configuration in DSPy lead to arbitrary file read when running untrusted code inside the sandbox The overly permissive sandbox configuration in DSPy allows attackers to steal sensitive files in cases when users build an AI agent which consumes user input and uses the “PythonInterpreter” class. dspy ==0 pkgs.python312Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0 pkgs.python313Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0 Package maintainers: 1 @marius851000 Marius David <mariusdavid@laposte.net> CVE-2025-64354 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 5 hours ago WordPress Gutenberg plugin <= 21.8.2 - Cross Site Scripting (XSS) vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matias Ventura Gutenberg gutenberg allows Stored XSS.This issue affects Gutenberg: from n/a through <= 21.8.2. gutenberg =<<= 21.8.2 pkgs.nltk-data.gutenberg NLTK Data nixos-unstable 0-unstable-2024-07-29 nixos-unstable-small 0-unstable-2024-07-29 nixpkgs-unstable 0-unstable-2024-07-29 pkgs.wordpressPackages.plugins.gutenberg nixos-25.05 20.6.0 nixpkgs-25.05-darwin 20.6.0 nixos-25.05-small 20.6.0 nixos-unstable 20.6.0 nixos-unstable-small 20.6.0 nixpkgs-unstable 20.6.0 pkgs.haskellPackages.gutenberg-fibonaccis The first 1001 Fibonacci numbers, retrieved from the Gutenberg Project nixos-25.05 1.1.0 nixpkgs-25.05-darwin 1.1.0 nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 Package maintainers: 2 @bengsparks Ben Sparks <benjamin.sparks@protonmail.com> @happysalada Raphael Megzari <raphael@megzari.com> CVE-2025-64363 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 5 hours ago WordPress Kleo theme < 5.5.0 - Local File Inclusion vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SeventhQueen Kleo kleo allows PHP Local File Inclusion.This issue affects Kleo: from n/a through < 5.5.0. kleo =<< 5.5.0 pkgs.libsForQt5.libkleo nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.kdePackages.libkleo Library that provides cryptography support for mails nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1 pkgs.libsForQt5.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.kdePackages.kleopatra Certificate manager and GUI for OpenPGP and CMS cryptography nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1 pkgs.plasma5Packages.libkleo nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.plasma5Packages.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 Package maintainers: 9 @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @K900 Ilya K. <me@0upti.me> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @mjm Matt Moriarity <matt@mattmoriarity.com> @NickCao Nick Cao <nickcao@nichi.co> @vandenoever Jos van den Oever <jos@vandenoever.info> @nyanloutre Paul Trehiou <paul@nyanlout.re> CVE-2025-62229 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): HIGH Availability impact (A): HIGH created 5 hours ago Xorg: xmayland: use-after-free in xpresentnotify structure creation A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension notifications. Improper error handling during notification creation can leave dangling pointers that lead to a use-after-free condition. This can cause memory corruption or a crash, potentially allowing an attacker to execute arbitrary code or cause a denial of service. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0 CVE-2025-62230 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): HIGH created 5 hours ago Xorg: xwayland: use-after-free in xkb client resource removal A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detaching related resources, leading to a use-after-free condition. This can cause memory corruption or a crash when affected clients disconnect. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0 CVE-2025-62402 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 5 hours ago Apache Airflow: Airflow 3 API: /api/v2/dagReports executes DAG Python in API API users via `/api/v2/dagReports` could perform Dag code execution in the context of the api-server if the api-server was deployed in the environment where Dag files were available. apache-airflow <3.1.1 pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co> CVE-2025-62231 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): HIGH created 5 hours ago Xorg: xmayland: value overflow in xkbsetcompatmap() A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCompatMap() function can cause an unsigned short overflow. If an attacker sends specially crafted input data, the value calculation may overflow, leading to memory corruption or a crash. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0 CVE-2025-54941 4.6 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 5 hours ago Apache Airflow: Command injection in "example_dag_decorator" An example dag `example_dag_decorator` had non-validated parameter that allowed the UI user to redirect the example to a malicious server and execute code on worker. This however required that the example dags are enabled in production (not default) or the example dag code copied to build your own similar dag. If you used the `example_dag_decorator` please review it and apply the changes implemented in Airflow 3.0.5 accordingly. apache-airflow << 3.0.5 pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co>
CVE-2023-43785 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 4 hours ago Libx11: out-of-bounds memory access in _xkbreadkeysyms() A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system. libX11 <1.8.7 * pkgs.xorg.libX11 nixos-25.05 1.8.12 nixpkgs-25.05-darwin 1.8.12 nixos-25.05-small 1.8.12 pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11
pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11
CVE-2023-43787 7.8 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 4 hours ago Libx11: integer overflow in xcreateimage() leading to a heap overflow A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges. libX11 <1.8.7 * pkgs.xorg.libX11 nixos-25.05 1.8.12 nixpkgs-25.05-darwin 1.8.12 nixos-25.05-small 1.8.12 pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11
pkgs.tests.pkg-config.defaultPkgConfigPackages.x11 Test whether libX11-1.8.12 exposes pkg-config modules x11 nixos-25.05 libX11 nixpkgs-25.05-darwin libX11 nixos-25.05-small libX11
CVE-2025-12695 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 5 hours ago Insecure configuration in DSPy lead to arbitrary file read when running untrusted code inside the sandbox The overly permissive sandbox configuration in DSPy allows attackers to steal sensitive files in cases when users build an AI agent which consumes user input and uses the “PythonInterpreter” class. dspy ==0 pkgs.python312Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0 pkgs.python313Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0 Package maintainers: 1 @marius851000 Marius David <mariusdavid@laposte.net>
pkgs.python312Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0
pkgs.python313Packages.ndspy Python library for many Nintendo DS file formats nixos-25.05 4.2.0 nixpkgs-25.05-darwin 4.2.0 nixos-25.05-small 4.2.0 nixos-unstable 4.2.0 nixos-unstable-small 4.2.0 nixpkgs-unstable 4.2.0
CVE-2025-64354 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 5 hours ago WordPress Gutenberg plugin <= 21.8.2 - Cross Site Scripting (XSS) vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matias Ventura Gutenberg gutenberg allows Stored XSS.This issue affects Gutenberg: from n/a through <= 21.8.2. gutenberg =<<= 21.8.2 pkgs.nltk-data.gutenberg NLTK Data nixos-unstable 0-unstable-2024-07-29 nixos-unstable-small 0-unstable-2024-07-29 nixpkgs-unstable 0-unstable-2024-07-29 pkgs.wordpressPackages.plugins.gutenberg nixos-25.05 20.6.0 nixpkgs-25.05-darwin 20.6.0 nixos-25.05-small 20.6.0 nixos-unstable 20.6.0 nixos-unstable-small 20.6.0 nixpkgs-unstable 20.6.0 pkgs.haskellPackages.gutenberg-fibonaccis The first 1001 Fibonacci numbers, retrieved from the Gutenberg Project nixos-25.05 1.1.0 nixpkgs-25.05-darwin 1.1.0 nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 Package maintainers: 2 @bengsparks Ben Sparks <benjamin.sparks@protonmail.com> @happysalada Raphael Megzari <raphael@megzari.com>
pkgs.nltk-data.gutenberg NLTK Data nixos-unstable 0-unstable-2024-07-29 nixos-unstable-small 0-unstable-2024-07-29 nixpkgs-unstable 0-unstable-2024-07-29
pkgs.wordpressPackages.plugins.gutenberg nixos-25.05 20.6.0 nixpkgs-25.05-darwin 20.6.0 nixos-25.05-small 20.6.0 nixos-unstable 20.6.0 nixos-unstable-small 20.6.0 nixpkgs-unstable 20.6.0
pkgs.haskellPackages.gutenberg-fibonaccis The first 1001 Fibonacci numbers, retrieved from the Gutenberg Project nixos-25.05 1.1.0 nixpkgs-25.05-darwin 1.1.0 nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0
CVE-2025-64363 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 5 hours ago WordPress Kleo theme < 5.5.0 - Local File Inclusion vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SeventhQueen Kleo kleo allows PHP Local File Inclusion.This issue affects Kleo: from n/a through < 5.5.0. kleo =<< 5.5.0 pkgs.libsForQt5.libkleo nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.kdePackages.libkleo Library that provides cryptography support for mails nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1 pkgs.libsForQt5.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.kdePackages.kleopatra Certificate manager and GUI for OpenPGP and CMS cryptography nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1 pkgs.plasma5Packages.libkleo nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 pkgs.plasma5Packages.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5 Package maintainers: 9 @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @K900 Ilya K. <me@0upti.me> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @mjm Matt Moriarity <matt@mattmoriarity.com> @NickCao Nick Cao <nickcao@nichi.co> @vandenoever Jos van den Oever <jos@vandenoever.info> @nyanloutre Paul Trehiou <paul@nyanlout.re>
pkgs.kdePackages.libkleo Library that provides cryptography support for mails nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1
pkgs.libsForQt5.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5
pkgs.kdePackages.kleopatra Certificate manager and GUI for OpenPGP and CMS cryptography nixos-25.05 25.04.3 nixpkgs-25.05-darwin 25.04.3 nixos-25.05-small 25.04.3 nixos-unstable 25.08.1 nixos-unstable-small 25.08.1 nixpkgs-unstable 25.08.1
pkgs.plasma5Packages.libkleo nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5
pkgs.plasma5Packages.kleopatra Certificate manager and unified crypto GUI nixos-25.05 23.08.5 nixpkgs-25.05-darwin 23.08.5 nixos-25.05-small 23.08.5
CVE-2025-62229 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): HIGH Availability impact (A): HIGH created 5 hours ago Xorg: xmayland: use-after-free in xpresentnotify structure creation A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension notifications. Improper error handling during notification creation can leave dangling pointers that lead to a use-after-free condition. This can cause memory corruption or a crash, potentially allowing an attacker to execute arbitrary code or cause a denial of service. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
CVE-2025-62230 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): HIGH created 5 hours ago Xorg: xwayland: use-after-free in xkb client resource removal A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detaching related resources, leading to a use-after-free condition. This can cause memory corruption or a crash when affected clients disconnect. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
CVE-2025-62402 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 5 hours ago Apache Airflow: Airflow 3 API: /api/v2/dagReports executes DAG Python in API API users via `/api/v2/dagReports` could perform Dag code execution in the context of the api-server if the api-server was deployed in the environment where Dag files were available. apache-airflow <3.1.1 pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co>
pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3
CVE-2025-62231 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): HIGH created 5 hours ago Xorg: xmayland: value overflow in xkbsetcompatmap() A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCompatMap() function can cause an unsigned short overflow. If an attacker sends specially crafted input data, the value calculation may overflow, leading to memory corruption or a crash. tigervnc * xorg-x11-server * xorg-x11-server-Xwayland * pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
pkgs.tigervnc Fork of tightVNC, made in cooperation with VirtualGL nixos-25.05 1.14.0 nixpkgs-25.05-darwin 1.14.0 nixos-25.05-small 1.14.0 nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
CVE-2025-54941 4.6 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 5 hours ago Apache Airflow: Command injection in "example_dag_decorator" An example dag `example_dag_decorator` had non-validated parameter that allowed the UI user to redirect the example to a malicious server and execute code on worker. This however required that the example dags are enabled in production (not default) or the example dag code copied to build your own similar dag. If you used the `example_dag_decorator` please review it and apply the changes implemented in Airflow 3.0.5 accordingly. apache-airflow << 3.0.5 pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co>
pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-25.05 2.7.3 nixpkgs-25.05-darwin 2.7.3 nixos-25.05-small 2.7.3 nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3