Dismissed suggestions Untriaged suggestions Draft issues Published issues Automatically generated suggestions Create Draft to queue a suggestion for refinement. Dismiss to remove a suggestion from the queue. CVE-2025-28975 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago WordPress Alike - WordPress Custom Post Comparison <= 3.0.1 - Cross Site Scripting (XSS) Vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in redqteam Alike - WordPress Custom Post Comparison allows Reflected XSS. This issue affects Alike - WordPress Custom Post Comparison: from n/a through 3.0.1. alike =<3.0.1 pkgs.soundalike Find duplicate audio files using acoustic fingerprints nixos-unstable ??? nixpkgs-unstable 0.1.2 pkgs.gnomeExtensions.compiz-alike-magic-lamp-effect Magic lamp effect inspired by the Compiz ones nixos-unstable ??? nixpkgs-unstable 21 Package maintainers: 2 @atar13 Anthony Tarbinian <atar137h@gmail.com> @honnip Jung seungwoo <me@honnip.page> CVE-2025-49053 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago WordPress WP Airdrop Manager plugin <= 1.0.5 - Cross Site Scripting (XSS) vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kadesthemes WP Airdrop Manager allows Stored XSS. This issue affects WP Airdrop Manager: from n/a through 1.0.5. airdrop =<1.0.5 pkgs.pairdrop Local file sharing in your browser nixos-unstable ??? nixpkgs-unstable 1.11.2 pkgs.airdrop-cli Use Airdrop from the CLI on macOS written in Swift nixos-unstable ??? nixpkgs-unstable 0-unstable-2024-04-13 pkgs.nodePackages.hs-airdrop Handshake airdrop redemption nixos-unstable ??? nixpkgs-unstable 0.10.0 pkgs.nodePackages_latest.hs-airdrop Handshake airdrop redemption nixos-unstable ??? nixpkgs-unstable 0.10.0 Package maintainers: 3 @Enzime Michael Hoang @diogotcorreia Diogo Correia <me@diogotc.com> @dit7ya Mostly Void <7rat13@gmail.com> CVE-2025-54671 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): NONE created 1 month ago WordPress oik Plugin plugin <= 4.15.2 - Cross Site Request Forgery (CSRF) Vulnerability Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide oik allows Cross Site Request Forgery. This issue affects oik: from n/a through 4.15.2. oik =<4.15.2 pkgs.libvoikko Finnish language processing library nixos-unstable ??? nixpkgs-unstable 4.3.3 Package maintainers: 1 @Lurkki14 Jussi Kuokkanen <jussi.kuokkanen@protonmail.com> CVE-2025-54689 8.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago WordPress Urna Theme <= 2.5.7 - Local File Inclusion Vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Urna allows PHP Local File Inclusion. This issue affects Urna: from n/a through 2.5.7. urna =<2.5.7 pkgs.furnace Multi-system chiptune tracker compatible with DefleMask modules nixos-unstable ??? nixpkgs-unstable 0.6.8.3 pkgs.xournalpp Xournal++ is a handwriting Notetaking software with PDF annotation support nixos-unstable ??? nixpkgs-unstable 1.2.8 pkgs.journalist RSS aggregator nixos-unstable ??? nixpkgs-unstable 1.0.1 pkgs.lazyjournal TUI for journalctl, file system logs, as well as Docker and Podman containers nixos-unstable ??? nixpkgs-unstable 0.7.9 pkgs.qjournalctl Qt-based graphical user interface for systemd's journalctl command nixos-unstable ??? nixpkgs-unstable 0.6.4 pkgs.tui-journal Your journal app if you live in a terminal nixos-unstable ??? nixpkgs-unstable 0.16.1 pkgs.journalwatch Tool to find error messages in the systemd journal nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.annapurna-sil Unicode-based font family with broad support for writing systems that use the Devanagari script nixos-unstable ??? nixpkgs-unstable 2.100 pkgs.journaldriver Log forwarder from journald to Stackdriver Logging nixos-unstable ??? nixpkgs-unstable 5656.0.0 pkgs.systemd-journal2gelf Export entries from systemd's journal and send them to a graylog server using gelf nixos-unstable ??? nixpkgs-unstable 0-unstable-2023-03-10 pkgs.kdePackages.kjournald Framework for interacting with systemd-journald nixos-unstable ??? nixpkgs-unstable 25.08.1 pkgs.perlPackages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.perl538Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.perl540Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.python312Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0 pkgs.python313Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0 pkgs.python312Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.python313Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.haskellPackages.journalctl-stream Stream logs using journalctl nixos-unstable ??? nixpkgs-unstable 0.6.0.8 pkgs.haskellPackages.libsystemd-journal Haskell bindings to libsystemd-journal nixos-unstable ??? nixpkgs-unstable 1.4.6.0 pkgs.python312Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7 pkgs.python313Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7 pkgs.haskellPackages.logging-facade-journald Journald back-end for logging-facade nixos-unstable ??? nixpkgs-unstable 0.0.0 pkgs.typstPackages.starter-journal-article_0_1_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.1.1 pkgs.typstPackages.starter-journal-article_0_2_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.2.0 pkgs.typstPackages.starter-journal-article_0_3_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.0 pkgs.typstPackages.starter-journal-article_0_3_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.1 pkgs.typstPackages.starter-journal-article_0_3_2 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.2 pkgs.typstPackages.starter-journal-article_0_3_3 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.3 pkgs.typstPackages.starter-journal-article_0_4_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.4.0 Package maintainers: 20 @Moraxyc Moraxyc Xu <i@qaq.li> @fabaff Fabian Affolter <mail@fabian-affolter.ch> @florianjacob Florian Jacob <projects+nixos@florianjacob.de> @pluiedev Leah Amelia Chen <hi@pluie.me> @cherrypiejam Gongqi Huang @romildo José Romildo Malaquias <malaquias@gmail.com> @tazjin Vincent Ambo <mail@tazj.in> @fadenb Tristan Helmich <tristan.helmich+nixos@gmail.com> @fpletz Franz Pletz <fpletz@fnordicwalking.de> @kmein Kierán Meinhardt <kmein@posteo.de> @OPNA2608 Cosima Neidahl <opna2608@protonmail.com> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @mjm Matt Moriarity <matt@mattmoriarity.com> @NickCao Nick Cao <nickcao@nichi.co> @K900 Ilya K. <me@0upti.me> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @sikmir Nikolay Korotkiy <sikmir@disroot.org> @figsoda figsoda <figsoda@pm.me> CVE-2025-8941 7.8 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago Linux-pam: incomplete fix for cve-2025-6020 A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020. pam * web-terminal/web-terminal-tooling-rhel9 * web-terminal/web-terminal-rhel9-operator * registry.redhat.io/openshift-sandboxed-containers/osc-monitor-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-podvm-builder-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-podvm-payload-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9 * pkgs.pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1 pkgs.ipam Cli based IPAM written in Go with PowerDNS support nixos-unstable ??? nixpkgs-unstable 0.3.0-1 pkgs.opam Package manager for OCaml nixos-unstable ??? nixpkgs-unstable 2.4.1 pkgs.paml Phylogenetic Analysis by Maximum Likelihood (PAML) nixos-unstable ??? nixpkgs-unstable 4.10.7 pkgs.dspam Community Driven Antispam Filter nixos-unstable ??? nixpkgs-unstable 3.10.2 pkgs.pamix Pulseaudio terminal mixer nixos-unstable ??? nixpkgs-unstable 2.0 pkgs.rspamd Advanced spam filtering system nixos-unstable ??? nixpkgs-unstable 3.12.1 pkgs.openpam Open source PAM library that focuses on simplicity, correctness, and cleanliness nixos-unstable ??? nixpkgs-unstable 20230627 pkgs.pam_p11 Authentication with PKCS#11 modules nixos-unstable ??? nixpkgs-unstable 0.3.1 pkgs.pam_u2f PAM module for allowing authentication with a U2F device nixos-unstable ??? nixpkgs-unstable 1.4.0 pkgs.pamixer Pulseaudio command line mixer nixos-unstable ??? nixpkgs-unstable 1.6 pkgs.dopamine Audio player that keeps it simple nixos-unstable ??? nixpkgs-unstable 3.0.0-preview.39 pkgs.pam_krb5 PAM module allowing PAM-aware applications to authenticate users by performing an AS exchange with a Kerberos KDC nixos-unstable ??? nixpkgs-unstable krb5-4.11 pkgs.pam_ldap LDAP backend for PAM nixos-unstable ??? nixpkgs-unstable 0-unstable-2024-02-22 pkgs.pam_rssh PAM module for authenticating via ssh-agent, written in Rust nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.pam_ussh PAM module to authenticate using SSH certificates nixos-unstable ??? nixpkgs-unstable 0-unstable-2021-06-15 pkgs.linux-pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1 pkgs.ncpamixer Terminal mixer for PulseAudio inspired by pavucontrol nixos-unstable ??? nixpkgs-unstable 1.3.9 pkgs.opam2json Convert opam file syntax to JSON nixos-unstable ??? nixpkgs-unstable 0.4 pkgs.pam_dp9ik dp9ik pam module nixos-unstable ??? nixpkgs-unstable 1.6.6 pkgs.pam_gnupg Unlock GnuPG keys on login nixos-unstable ??? nixpkgs-unstable 0.4 pkgs.pam_mount PAM module to mount volumes for a user session nixos-unstable ??? nixpkgs-unstable 2.20 pkgs.pam_mysql PAM authentication module against a MySQL database nixos-unstable ??? nixpkgs-unstable 1.0.0-beta2 pkgs.pam_pgsql Support to authenticate against PostgreSQL for PAM-enabled appliations nixos-unstable ??? nixpkgs-unstable 2020-05-05 pkgs.pamtester Utility program to test the PAM facility nixos-unstable ??? nixpkgs-unstable 0.1.2 pkgs.pam_ccreds PAM module to locally authenticate using an enterprise identity when the network is unavailable nixos-unstable ??? nixpkgs-unstable 10 pkgs.pam_mktemp PAM for login service to provide per-user private directories nixos-unstable ??? nixpkgs-unstable 1.1.1 pkgs.pam_rundir Provide user runtime directory on Linux systems nixos-unstable ??? nixpkgs-unstable 1.0.0 pkgs.pam_tmpdir PAM module for creating safe per-user temporary directories nixos-unstable ??? nixpkgs-unstable 0.09 pkgs.yubico-pam Yubico PAM module nixos-unstable ??? nixpkgs-unstable 2.27 pkgs.pam-watchid PAM plugin module that allows the Apple Watch to be used for authentication nixos-unstable ??? nixpkgs-unstable 2-unstable-2024-12-24 pkgs.apparmor-pam Mandatory access control system - PAM service nixos-unstable ??? nixpkgs-unstable 4.1.1 pkgs.opam-publish Tool to ease contributions to opam repositories nixos-unstable ??? nixpkgs-unstable 2.5.1 pkgs.pam-reattach Reattach to the user's GUI session on macOS during authentication (for Touch ID support in tmux) nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.spamassassin Open-Source Spam Filter nixos-unstable ??? nixpkgs-unstable 4.0.1 pkgs.nss_pam_ldapd LDAP identity and authentication for NSS/PAM nixos-unstable ??? nixpkgs-unstable 0.9.13 pkgs.libpam-wrapper Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.opam-installer Handle (un)installation from opam install files nixos-unstable ??? nixpkgs-unstable 2.4.1 pkgs.pam-honeycreds PAM module that sends warnings when fake passwords are used nixos-unstable ??? nixpkgs-unstable 1.9 pkgs.rspamd-trainer Grabs messages from a spam mailbox via IMAP and feeds them to Rspamd for training nixos-unstable ??? nixpkgs-unstable 2023-11-27 pkgs.pam_ssh_agent_auth PAM module for authentication through the SSH agent nixos-unstable ??? nixpkgs-unstable 0.10.4 pkgs.rubyPackages.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.decode-spam-headers Script that helps you understand why your E-Mail ended up in Spam nixos-unstable ??? nixpkgs-unstable 2022-09-22-unreleased pkgs.haskellPackages.pam Haskell binding for C PAM API nixos-unstable ??? nixpkgs-unstable 0.2.0.0 pkgs.luaPackages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.google-authenticator Two-step verification, with pam module nixos-unstable ??? nixpkgs-unstable 1.11 pkgs.lua51Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.lua52Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.lua53Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.rubyPackages_3_1.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_2.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_3.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_4.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.kdePackages.kwallet-pam PAM Integration with KWallet - Unlock KWallet when you login nixos-unstable ??? nixpkgs-unstable 6.4.5 pkgs.opensmtpd-filter-rspamd OpenSMTPD filter integration for the Rspamd daemon nixos-unstable ??? nixpkgs-unstable 0.1.8 pkgs.python312Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0 pkgs.python313Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0 pkgs.sbclPackages.cl-xmlspam nixos-unstable ??? nixpkgs-unstable 20101006-http pkgs.python312Packages.pamela PAM interface using ctypes nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.python313Packages.pamela PAM interface using ctypes nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.stalwart-mail-spam-filter Secure & modern all-in-one mail server Stalwart (spam-filter module) nixos-unstable ??? nixpkgs-unstable 2.0.3 pkgs.python312Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.python313Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.python312Packages.python-pam Python pam module nixos-unstable ??? nixpkgs-unstable 2.0.2 pkgs.python313Packages.python-pam Python pam module nixos-unstable ??? nixpkgs-unstable 2.0.2 pkgs.wordpressPackages.plugins.antispam-bee nixos-unstable ??? nixpkgs-unstable 2.11.7 pkgs.matrix-synapse-plugins.matrix-synapse-pam PAM auth provider for the Synapse Matrix server nixos-unstable ??? nixpkgs-unstable 0.1.3 pkgs.matrix-synapse-plugins.synapse-http-antispam Synapse module that forwards spam checking to an HTTP server nixos-unstable ??? nixpkgs-unstable 0.5.0 pkgs.matrix-synapse-plugins.matrix-synapse-mjolnir-antispam AntiSpam / Banlist plugin to be used with mjolnir nixos-unstable ??? nixpkgs-unstable 1.11.0 pkgs.vscode-extensions.fabiospampinato.vscode-open-in-github VS Code extension to open the current project or file in github.com nixos-unstable ??? nixpkgs-unstable 2.3.1 Package maintainers: 55 @jojosch Johannes Schleifenbaum <johannes@js-webcoding.de> @sumnerevans Sumner Evans <me@sumnerevans.com> @NetaliDev Jennifer Graul <me@netali.de> @sbourdeauducq Sébastien Bourdeauducq <sb@m-labs.hk> @mkg20001 Maciej Krüger <mkg20001+nix@gmail.com> @traxys Quentin Boyer <quentin+dev@familleboyer.net> @dotlambda Robert Schütz <rschuetz17@gmail.com> @gshipunov Grigory Shipunov <blame@oxapentane.com> @tanneberger Tassilo Tanneberger <revol-xut@protonmail.com> @astro Astro <astro@spaceboyz.net> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @matthewbauer Matthew Bauer <mjbauer95@gmail.com> @aanderse Aaron Andersen <aaron@fosslib.net> @h7x4 h7x4 <h7x4@nani.wtf> @lockejan Jan Schmitt <git@smittie.de> @Samasaur1 Samasaur <sam@samasaur.com> @majiru Jacob Moody <moody@posixcafe.org> @wladmis Wladmis <dev@wladmis.org> @mjm Matt Moriarity <matt@mattmoriarity.com> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @K900 Ilya K. <me@0upti.me> @NickCao Nick Cao <nickcao@nichi.co> @Kranzes Ilan Joselevich <personal@ilanjoselevich.com> @XYenon XYenon <i@xyenon.bid> @peterhoeg Peter Hoeg <peter@hoeg.com> @philandstuff Philip Potter <philip.g.potter@gmail.com> @lukegb Luke Granger-Brown <nix@lukegb.com> @thiagokokada Thiago K. Okada <thiagokokada@gmail.com> @Flakebi Sebastian Neubauer <flakebi@t-online.de> @niols Nicolas Jeannerod <niols@niols.fr> @balsoft Alexander Bantyev <balsoft75@gmail.com> @onny Jonas Heinrich <onny@project-insanity.org> @oddlama oddlama <oddlama@oddlama.org> @norpl Syd Lightyear <norpol+nixpkgs@exaple.org> @Pandapip1 Gavin John <gavinnjohn@gmail.com> @happysalada Raphael Megzari <raphael@megzari.com> @avnik Alexander V. Nikolaev <avn@avnik.info> @globin Robin Gloster <mail@glob.in> @fpletz Franz Pletz <fpletz@fnordicwalking.de> @nlewo Antoine Eiche <lewo@abesis.fr> @aneeshusa Aneesh Agrawal <aneeshusa@gmail.com> @LordGrimmauld Sören Bender <soeren@benjos.de> @thoughtpolice Austin Seipp <aseipp@pobox.com> @ju1m Julien Moutinho <julm+nixpkgs@sourcephile.fr> @ern775 Eren Demir <eren.demir2479090@gmail.com> @Guanran928 Guanran Wang <guanran928@outlook.com> @lukego Luke Gorrie <luke@snabb.co> @nagy Daniel Nagy <danielnagy@posteo.de> @Uthar Kasper Gałkowski <galkowskikasper@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @hraban Hraban Luyat <hraban@0brg.net> @qknight Joachim Schiele <js@lastlog.de> @alyssais Alyssa Ross <hi@alyssa.is> CVE-2025-47444 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 1 month ago WordPress GiveWP Plugin < 4.6.1 is vulnerable to Sensitive Data (PII) Exposure Insertion of Sensitive Information Into Sent Data vulnerability in Liquid Web GiveWP allows Retrieve Embedded Sensitive Data.This issue affects GiveWP: from n/a before 4.6.1. give <4.6.1 pkgs.filegive Easy p2p file sending program nixos-unstable ??? nixpkgs-unstable 2022-05-29 CVE-2025-40920 8.6 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl use insecurely generated nonces Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl generate nonces using the Perl Data::UUID library. * Data::UUID does not use a strong cryptographic source for generating UUIDs. * Data::UUID returns v3 UUIDs, which are generated from known information and are unsuitable for security, as per RFC 9562. * The nonces should be generated from a strong cryptographic source, as per RFC 7616. Catalyst-Authentication-Credential-HTTP =<1.018 pkgs.perlPackages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018 pkgs.perl538Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018 pkgs.perl540Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018 CVE-2025-6505 8.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago Unauthorized access and impersonation can occur in versions 4.6.2.3226 and … Unauthorized access and impersonation can occur in versions 4.6.2.3226 and below of Progress Software's Hybrid Data Pipeline Server on Linux. This vulnerability allows attackers to combine credentials from different sources, potentially leading to client impersonation and unauthorized access. When OAuth Clients perform an OAuth handshake with the Hybrid Data Pipeline Server, the server accepts client credentials from both HTTP headers and request parameters. Server =<4.6.2.3226 pkgs.perlPackages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perl538Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perl540Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perlPackages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perlPackages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perlPackages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perl538Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perl538Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perl538Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perl540Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perl540Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perl540Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perlPackages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perlPackages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perlPackages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perlPackages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perlPackages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perl538Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perl540Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perl538Packages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perl540Packages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perlPackages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perlPackages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perl538Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl538Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perl538Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perl540Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl540Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perl540Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perlPackages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perlPackages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl538Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perl538Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perl540Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perl540Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perlPackages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perl538Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl540Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl538Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl540Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl538Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perl540Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perlPackages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 pkgs.perl538Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 pkgs.perl540Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 Package maintainers: 1 @anoadragon453 Andrew Morgan <andrew@amorgan.xyz> CVE-2025-8283 3.7 LOW CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): NONE created 1 month ago Netavark: podman: netavark may resolve hostnames to unexpected hosts A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers. rhcos netavark container-tools:rhel8/netavark container-tools:rhel8/containers-common pkgs.netavark Rust based network stack for containers nixos-unstable ??? nixpkgs-unstable 1.16.1 Package maintainers: 2 @vdemeester Vincent Demeester <vincent@sbr.pm> @saschagrunert Sascha Grunert <mail@saschagrunert.de> CVE-2025-3910 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 1 month ago Org.keycloak.authentication: two factor authentication bypass A flaw was found in Keycloak. The org.keycloak.authorization package may be vulnerable to circumventing required actions, allowing users to circumvent requirements such as setting up two-factor authentication. keycloak <26.1.* <26.0.11 <25.* <26.2.2 rhbk/keycloak-rhel9 * keycloak-rhel9-container * org.keycloak.authentication rhbk/keycloak-rhel9-operator * rhbk/keycloak-operator-bundle * keycloak-rhel9-operator-container * keycloak-rhel9-operator-bundle-container * pkgs.keycloak Identity and access management for modern applications and services nixos-unstable ??? nixpkgs-unstable 26.3.4 pkgs.terraform-providers.keycloak nixos-unstable ??? nixpkgs-unstable 5.4.0 pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0 pkgs.python313Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0 Package maintainers: 4 @talyz Kim Lindberger <kim.lindberger@gmail.com> @ngerstle Nicholas Gerstle <ngerstle@gmail.com> @leona-ya Leona Maroni <nix@leona.is> @NickCao Nick Cao <nickcao@nichi.co>
CVE-2025-28975 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago WordPress Alike - WordPress Custom Post Comparison <= 3.0.1 - Cross Site Scripting (XSS) Vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in redqteam Alike - WordPress Custom Post Comparison allows Reflected XSS. This issue affects Alike - WordPress Custom Post Comparison: from n/a through 3.0.1. alike =<3.0.1 pkgs.soundalike Find duplicate audio files using acoustic fingerprints nixos-unstable ??? nixpkgs-unstable 0.1.2 pkgs.gnomeExtensions.compiz-alike-magic-lamp-effect Magic lamp effect inspired by the Compiz ones nixos-unstable ??? nixpkgs-unstable 21 Package maintainers: 2 @atar13 Anthony Tarbinian <atar137h@gmail.com> @honnip Jung seungwoo <me@honnip.page>
pkgs.soundalike Find duplicate audio files using acoustic fingerprints nixos-unstable ??? nixpkgs-unstable 0.1.2
pkgs.gnomeExtensions.compiz-alike-magic-lamp-effect Magic lamp effect inspired by the Compiz ones nixos-unstable ??? nixpkgs-unstable 21
CVE-2025-49053 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago WordPress WP Airdrop Manager plugin <= 1.0.5 - Cross Site Scripting (XSS) vulnerability Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kadesthemes WP Airdrop Manager allows Stored XSS. This issue affects WP Airdrop Manager: from n/a through 1.0.5. airdrop =<1.0.5 pkgs.pairdrop Local file sharing in your browser nixos-unstable ??? nixpkgs-unstable 1.11.2 pkgs.airdrop-cli Use Airdrop from the CLI on macOS written in Swift nixos-unstable ??? nixpkgs-unstable 0-unstable-2024-04-13 pkgs.nodePackages.hs-airdrop Handshake airdrop redemption nixos-unstable ??? nixpkgs-unstable 0.10.0 pkgs.nodePackages_latest.hs-airdrop Handshake airdrop redemption nixos-unstable ??? nixpkgs-unstable 0.10.0 Package maintainers: 3 @Enzime Michael Hoang @diogotcorreia Diogo Correia <me@diogotc.com> @dit7ya Mostly Void <7rat13@gmail.com>
pkgs.airdrop-cli Use Airdrop from the CLI on macOS written in Swift nixos-unstable ??? nixpkgs-unstable 0-unstable-2024-04-13
pkgs.nodePackages_latest.hs-airdrop Handshake airdrop redemption nixos-unstable ??? nixpkgs-unstable 0.10.0
CVE-2025-54671 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): NONE created 1 month ago WordPress oik Plugin plugin <= 4.15.2 - Cross Site Request Forgery (CSRF) Vulnerability Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide oik allows Cross Site Request Forgery. This issue affects oik: from n/a through 4.15.2. oik =<4.15.2 pkgs.libvoikko Finnish language processing library nixos-unstable ??? nixpkgs-unstable 4.3.3 Package maintainers: 1 @Lurkki14 Jussi Kuokkanen <jussi.kuokkanen@protonmail.com>
CVE-2025-54689 8.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago WordPress Urna Theme <= 2.5.7 - Local File Inclusion Vulnerability Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in thembay Urna allows PHP Local File Inclusion. This issue affects Urna: from n/a through 2.5.7. urna =<2.5.7 pkgs.furnace Multi-system chiptune tracker compatible with DefleMask modules nixos-unstable ??? nixpkgs-unstable 0.6.8.3 pkgs.xournalpp Xournal++ is a handwriting Notetaking software with PDF annotation support nixos-unstable ??? nixpkgs-unstable 1.2.8 pkgs.journalist RSS aggregator nixos-unstable ??? nixpkgs-unstable 1.0.1 pkgs.lazyjournal TUI for journalctl, file system logs, as well as Docker and Podman containers nixos-unstable ??? nixpkgs-unstable 0.7.9 pkgs.qjournalctl Qt-based graphical user interface for systemd's journalctl command nixos-unstable ??? nixpkgs-unstable 0.6.4 pkgs.tui-journal Your journal app if you live in a terminal nixos-unstable ??? nixpkgs-unstable 0.16.1 pkgs.journalwatch Tool to find error messages in the systemd journal nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.annapurna-sil Unicode-based font family with broad support for writing systems that use the Devanagari script nixos-unstable ??? nixpkgs-unstable 2.100 pkgs.journaldriver Log forwarder from journald to Stackdriver Logging nixos-unstable ??? nixpkgs-unstable 5656.0.0 pkgs.systemd-journal2gelf Export entries from systemd's journal and send them to a graylog server using gelf nixos-unstable ??? nixpkgs-unstable 0-unstable-2023-03-10 pkgs.kdePackages.kjournald Framework for interacting with systemd-journald nixos-unstable ??? nixpkgs-unstable 25.08.1 pkgs.perlPackages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.perl538Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.perl540Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30 pkgs.python312Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0 pkgs.python313Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0 pkgs.python312Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.python313Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0 pkgs.haskellPackages.journalctl-stream Stream logs using journalctl nixos-unstable ??? nixpkgs-unstable 0.6.0.8 pkgs.haskellPackages.libsystemd-journal Haskell bindings to libsystemd-journal nixos-unstable ??? nixpkgs-unstable 1.4.6.0 pkgs.python312Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7 pkgs.python313Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7 pkgs.haskellPackages.logging-facade-journald Journald back-end for logging-facade nixos-unstable ??? nixpkgs-unstable 0.0.0 pkgs.typstPackages.starter-journal-article_0_1_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.1.1 pkgs.typstPackages.starter-journal-article_0_2_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.2.0 pkgs.typstPackages.starter-journal-article_0_3_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.0 pkgs.typstPackages.starter-journal-article_0_3_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.1 pkgs.typstPackages.starter-journal-article_0_3_2 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.2 pkgs.typstPackages.starter-journal-article_0_3_3 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.3 pkgs.typstPackages.starter-journal-article_0_4_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.4.0 Package maintainers: 20 @Moraxyc Moraxyc Xu <i@qaq.li> @fabaff Fabian Affolter <mail@fabian-affolter.ch> @florianjacob Florian Jacob <projects+nixos@florianjacob.de> @pluiedev Leah Amelia Chen <hi@pluie.me> @cherrypiejam Gongqi Huang @romildo José Romildo Malaquias <malaquias@gmail.com> @tazjin Vincent Ambo <mail@tazj.in> @fadenb Tristan Helmich <tristan.helmich+nixos@gmail.com> @fpletz Franz Pletz <fpletz@fnordicwalking.de> @kmein Kierán Meinhardt <kmein@posteo.de> @OPNA2608 Cosima Neidahl <opna2608@protonmail.com> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @mjm Matt Moriarity <matt@mattmoriarity.com> @NickCao Nick Cao <nickcao@nichi.co> @K900 Ilya K. <me@0upti.me> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @sikmir Nikolay Korotkiy <sikmir@disroot.org> @figsoda figsoda <figsoda@pm.me>
pkgs.furnace Multi-system chiptune tracker compatible with DefleMask modules nixos-unstable ??? nixpkgs-unstable 0.6.8.3
pkgs.xournalpp Xournal++ is a handwriting Notetaking software with PDF annotation support nixos-unstable ??? nixpkgs-unstable 1.2.8
pkgs.lazyjournal TUI for journalctl, file system logs, as well as Docker and Podman containers nixos-unstable ??? nixpkgs-unstable 0.7.9
pkgs.qjournalctl Qt-based graphical user interface for systemd's journalctl command nixos-unstable ??? nixpkgs-unstable 0.6.4
pkgs.tui-journal Your journal app if you live in a terminal nixos-unstable ??? nixpkgs-unstable 0.16.1
pkgs.journalwatch Tool to find error messages in the systemd journal nixos-unstable ??? nixpkgs-unstable 1.1.0
pkgs.annapurna-sil Unicode-based font family with broad support for writing systems that use the Devanagari script nixos-unstable ??? nixpkgs-unstable 2.100
pkgs.journaldriver Log forwarder from journald to Stackdriver Logging nixos-unstable ??? nixpkgs-unstable 5656.0.0
pkgs.systemd-journal2gelf Export entries from systemd's journal and send them to a graylog server using gelf nixos-unstable ??? nixpkgs-unstable 0-unstable-2023-03-10
pkgs.kdePackages.kjournald Framework for interacting with systemd-journald nixos-unstable ??? nixpkgs-unstable 25.08.1
pkgs.perlPackages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30
pkgs.perl538Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30
pkgs.perl540Packages.LogJournald Send messages to a systemd journal nixos-unstable ??? nixpkgs-unstable 0.30
pkgs.python312Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0
pkgs.python313Packages.swh-journal Persistent logger of changes to the archive, with publish-subscribe support nixos-unstable ??? nixpkgs-unstable 2.0.0
pkgs.python312Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0
pkgs.python313Packages.waterfurnace Python interface to waterfurnace geothermal systems nixos-unstable ??? nixpkgs-unstable 1.1.0
pkgs.haskellPackages.journalctl-stream Stream logs using journalctl nixos-unstable ??? nixpkgs-unstable 0.6.0.8
pkgs.haskellPackages.libsystemd-journal Haskell bindings to libsystemd-journal nixos-unstable ??? nixpkgs-unstable 1.4.6.0
pkgs.python312Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7
pkgs.python313Packages.logging-journald Logging handler for writing logs to the journald nixos-unstable ??? nixpkgs-unstable 0.6.7
pkgs.haskellPackages.logging-facade-journald Journald back-end for logging-facade nixos-unstable ??? nixpkgs-unstable 0.0.0
pkgs.typstPackages.starter-journal-article_0_1_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.1.1
pkgs.typstPackages.starter-journal-article_0_2_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.2.0
pkgs.typstPackages.starter-journal-article_0_3_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.0
pkgs.typstPackages.starter-journal-article_0_3_1 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.1
pkgs.typstPackages.starter-journal-article_0_3_2 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.2
pkgs.typstPackages.starter-journal-article_0_3_3 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.3.3
pkgs.typstPackages.starter-journal-article_0_4_0 A starter template for journal articles nixos-unstable ??? nixpkgs-unstable 0.4.0
CVE-2025-8941 7.8 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago Linux-pam: incomplete fix for cve-2025-6020 A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020. pam * web-terminal/web-terminal-tooling-rhel9 * web-terminal/web-terminal-rhel9-operator * registry.redhat.io/openshift-sandboxed-containers/osc-monitor-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-podvm-builder-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-podvm-payload-rhel9 * registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9 * pkgs.pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1 pkgs.ipam Cli based IPAM written in Go with PowerDNS support nixos-unstable ??? nixpkgs-unstable 0.3.0-1 pkgs.opam Package manager for OCaml nixos-unstable ??? nixpkgs-unstable 2.4.1 pkgs.paml Phylogenetic Analysis by Maximum Likelihood (PAML) nixos-unstable ??? nixpkgs-unstable 4.10.7 pkgs.dspam Community Driven Antispam Filter nixos-unstable ??? nixpkgs-unstable 3.10.2 pkgs.pamix Pulseaudio terminal mixer nixos-unstable ??? nixpkgs-unstable 2.0 pkgs.rspamd Advanced spam filtering system nixos-unstable ??? nixpkgs-unstable 3.12.1 pkgs.openpam Open source PAM library that focuses on simplicity, correctness, and cleanliness nixos-unstable ??? nixpkgs-unstable 20230627 pkgs.pam_p11 Authentication with PKCS#11 modules nixos-unstable ??? nixpkgs-unstable 0.3.1 pkgs.pam_u2f PAM module for allowing authentication with a U2F device nixos-unstable ??? nixpkgs-unstable 1.4.0 pkgs.pamixer Pulseaudio command line mixer nixos-unstable ??? nixpkgs-unstable 1.6 pkgs.dopamine Audio player that keeps it simple nixos-unstable ??? nixpkgs-unstable 3.0.0-preview.39 pkgs.pam_krb5 PAM module allowing PAM-aware applications to authenticate users by performing an AS exchange with a Kerberos KDC nixos-unstable ??? nixpkgs-unstable krb5-4.11 pkgs.pam_ldap LDAP backend for PAM nixos-unstable ??? nixpkgs-unstable 0-unstable-2024-02-22 pkgs.pam_rssh PAM module for authenticating via ssh-agent, written in Rust nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.pam_ussh PAM module to authenticate using SSH certificates nixos-unstable ??? nixpkgs-unstable 0-unstable-2021-06-15 pkgs.linux-pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1 pkgs.ncpamixer Terminal mixer for PulseAudio inspired by pavucontrol nixos-unstable ??? nixpkgs-unstable 1.3.9 pkgs.opam2json Convert opam file syntax to JSON nixos-unstable ??? nixpkgs-unstable 0.4 pkgs.pam_dp9ik dp9ik pam module nixos-unstable ??? nixpkgs-unstable 1.6.6 pkgs.pam_gnupg Unlock GnuPG keys on login nixos-unstable ??? nixpkgs-unstable 0.4 pkgs.pam_mount PAM module to mount volumes for a user session nixos-unstable ??? nixpkgs-unstable 2.20 pkgs.pam_mysql PAM authentication module against a MySQL database nixos-unstable ??? nixpkgs-unstable 1.0.0-beta2 pkgs.pam_pgsql Support to authenticate against PostgreSQL for PAM-enabled appliations nixos-unstable ??? nixpkgs-unstable 2020-05-05 pkgs.pamtester Utility program to test the PAM facility nixos-unstable ??? nixpkgs-unstable 0.1.2 pkgs.pam_ccreds PAM module to locally authenticate using an enterprise identity when the network is unavailable nixos-unstable ??? nixpkgs-unstable 10 pkgs.pam_mktemp PAM for login service to provide per-user private directories nixos-unstable ??? nixpkgs-unstable 1.1.1 pkgs.pam_rundir Provide user runtime directory on Linux systems nixos-unstable ??? nixpkgs-unstable 1.0.0 pkgs.pam_tmpdir PAM module for creating safe per-user temporary directories nixos-unstable ??? nixpkgs-unstable 0.09 pkgs.yubico-pam Yubico PAM module nixos-unstable ??? nixpkgs-unstable 2.27 pkgs.pam-watchid PAM plugin module that allows the Apple Watch to be used for authentication nixos-unstable ??? nixpkgs-unstable 2-unstable-2024-12-24 pkgs.apparmor-pam Mandatory access control system - PAM service nixos-unstable ??? nixpkgs-unstable 4.1.1 pkgs.opam-publish Tool to ease contributions to opam repositories nixos-unstable ??? nixpkgs-unstable 2.5.1 pkgs.pam-reattach Reattach to the user's GUI session on macOS during authentication (for Touch ID support in tmux) nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.spamassassin Open-Source Spam Filter nixos-unstable ??? nixpkgs-unstable 4.0.1 pkgs.nss_pam_ldapd LDAP identity and authentication for NSS/PAM nixos-unstable ??? nixpkgs-unstable 0.9.13 pkgs.libpam-wrapper Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.opam-installer Handle (un)installation from opam install files nixos-unstable ??? nixpkgs-unstable 2.4.1 pkgs.pam-honeycreds PAM module that sends warnings when fake passwords are used nixos-unstable ??? nixpkgs-unstable 1.9 pkgs.rspamd-trainer Grabs messages from a spam mailbox via IMAP and feeds them to Rspamd for training nixos-unstable ??? nixpkgs-unstable 2023-11-27 pkgs.pam_ssh_agent_auth PAM module for authentication through the SSH agent nixos-unstable ??? nixpkgs-unstable 0.10.4 pkgs.rubyPackages.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.decode-spam-headers Script that helps you understand why your E-Mail ended up in Spam nixos-unstable ??? nixpkgs-unstable 2022-09-22-unreleased pkgs.haskellPackages.pam Haskell binding for C PAM API nixos-unstable ??? nixpkgs-unstable 0.2.0.0 pkgs.luaPackages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.google-authenticator Two-step verification, with pam module nixos-unstable ??? nixpkgs-unstable 1.11 pkgs.lua51Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.lua52Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.lua53Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03 pkgs.rubyPackages_3_1.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_2.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_3.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.rubyPackages_3_4.rpam2 nixos-unstable ??? nixpkgs-unstable rpam2-4.0.2 pkgs.kdePackages.kwallet-pam PAM Integration with KWallet - Unlock KWallet when you login nixos-unstable ??? nixpkgs-unstable 6.4.5 pkgs.opensmtpd-filter-rspamd OpenSMTPD filter integration for the Rspamd daemon nixos-unstable ??? nixpkgs-unstable 0.1.8 pkgs.python312Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0 pkgs.python313Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0 pkgs.sbclPackages.cl-xmlspam nixos-unstable ??? nixpkgs-unstable 20101006-http pkgs.python312Packages.pamela PAM interface using ctypes nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.python313Packages.pamela PAM interface using ctypes nixos-unstable ??? nixpkgs-unstable 1.2.0 pkgs.stalwart-mail-spam-filter Secure & modern all-in-one mail server Stalwart (spam-filter module) nixos-unstable ??? nixpkgs-unstable 2.0.3 pkgs.python312Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.python313Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5 pkgs.python312Packages.python-pam Python pam module nixos-unstable ??? nixpkgs-unstable 2.0.2 pkgs.python313Packages.python-pam Python pam module nixos-unstable ??? nixpkgs-unstable 2.0.2 pkgs.wordpressPackages.plugins.antispam-bee nixos-unstable ??? nixpkgs-unstable 2.11.7 pkgs.matrix-synapse-plugins.matrix-synapse-pam PAM auth provider for the Synapse Matrix server nixos-unstable ??? nixpkgs-unstable 0.1.3 pkgs.matrix-synapse-plugins.synapse-http-antispam Synapse module that forwards spam checking to an HTTP server nixos-unstable ??? nixpkgs-unstable 0.5.0 pkgs.matrix-synapse-plugins.matrix-synapse-mjolnir-antispam AntiSpam / Banlist plugin to be used with mjolnir nixos-unstable ??? nixpkgs-unstable 1.11.0 pkgs.vscode-extensions.fabiospampinato.vscode-open-in-github VS Code extension to open the current project or file in github.com nixos-unstable ??? nixpkgs-unstable 2.3.1 Package maintainers: 55 @jojosch Johannes Schleifenbaum <johannes@js-webcoding.de> @sumnerevans Sumner Evans <me@sumnerevans.com> @NetaliDev Jennifer Graul <me@netali.de> @sbourdeauducq Sébastien Bourdeauducq <sb@m-labs.hk> @mkg20001 Maciej Krüger <mkg20001+nix@gmail.com> @traxys Quentin Boyer <quentin+dev@familleboyer.net> @dotlambda Robert Schütz <rschuetz17@gmail.com> @gshipunov Grigory Shipunov <blame@oxapentane.com> @tanneberger Tassilo Tanneberger <revol-xut@protonmail.com> @astro Astro <astro@spaceboyz.net> @SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com> @matthewbauer Matthew Bauer <mjbauer95@gmail.com> @aanderse Aaron Andersen <aaron@fosslib.net> @h7x4 h7x4 <h7x4@nani.wtf> @lockejan Jan Schmitt <git@smittie.de> @Samasaur1 Samasaur <sam@samasaur.com> @majiru Jacob Moody <moody@posixcafe.org> @wladmis Wladmis <dev@wladmis.org> @mjm Matt Moriarity <matt@mattmoriarity.com> @ttuegel Thomas Tuegel <ttuegel@mailbox.org> @LunNova Luna Nova <nixpkgs-maintainer@lunnova.dev> @ilya-fedin Ilya Fedin <fedin-ilja2010@ya.ru> @K900 Ilya K. <me@0upti.me> @NickCao Nick Cao <nickcao@nichi.co> @Kranzes Ilan Joselevich <personal@ilanjoselevich.com> @XYenon XYenon <i@xyenon.bid> @peterhoeg Peter Hoeg <peter@hoeg.com> @philandstuff Philip Potter <philip.g.potter@gmail.com> @lukegb Luke Granger-Brown <nix@lukegb.com> @thiagokokada Thiago K. Okada <thiagokokada@gmail.com> @Flakebi Sebastian Neubauer <flakebi@t-online.de> @niols Nicolas Jeannerod <niols@niols.fr> @balsoft Alexander Bantyev <balsoft75@gmail.com> @onny Jonas Heinrich <onny@project-insanity.org> @oddlama oddlama <oddlama@oddlama.org> @norpl Syd Lightyear <norpol+nixpkgs@exaple.org> @Pandapip1 Gavin John <gavinnjohn@gmail.com> @happysalada Raphael Megzari <raphael@megzari.com> @avnik Alexander V. Nikolaev <avn@avnik.info> @globin Robin Gloster <mail@glob.in> @fpletz Franz Pletz <fpletz@fnordicwalking.de> @nlewo Antoine Eiche <lewo@abesis.fr> @aneeshusa Aneesh Agrawal <aneeshusa@gmail.com> @LordGrimmauld Sören Bender <soeren@benjos.de> @thoughtpolice Austin Seipp <aseipp@pobox.com> @ju1m Julien Moutinho <julm+nixpkgs@sourcephile.fr> @ern775 Eren Demir <eren.demir2479090@gmail.com> @Guanran928 Guanran Wang <guanran928@outlook.com> @lukego Luke Gorrie <luke@snabb.co> @nagy Daniel Nagy <danielnagy@posteo.de> @Uthar Kasper Gałkowski <galkowskikasper@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @hraban Hraban Luyat <hraban@0brg.net> @qknight Joachim Schiele <js@lastlog.de> @alyssais Alyssa Ross <hi@alyssa.is>
pkgs.pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1
pkgs.ipam Cli based IPAM written in Go with PowerDNS support nixos-unstable ??? nixpkgs-unstable 0.3.0-1
pkgs.paml Phylogenetic Analysis by Maximum Likelihood (PAML) nixos-unstable ??? nixpkgs-unstable 4.10.7
pkgs.openpam Open source PAM library that focuses on simplicity, correctness, and cleanliness nixos-unstable ??? nixpkgs-unstable 20230627
pkgs.pam_u2f PAM module for allowing authentication with a U2F device nixos-unstable ??? nixpkgs-unstable 1.4.0
pkgs.pam_krb5 PAM module allowing PAM-aware applications to authenticate users by performing an AS exchange with a Kerberos KDC nixos-unstable ??? nixpkgs-unstable krb5-4.11
pkgs.pam_rssh PAM module for authenticating via ssh-agent, written in Rust nixos-unstable ??? nixpkgs-unstable 1.2.0
pkgs.pam_ussh PAM module to authenticate using SSH certificates nixos-unstable ??? nixpkgs-unstable 0-unstable-2021-06-15
pkgs.linux-pam Pluggable Authentication Modules, a flexible mechanism for authenticating user nixos-unstable ??? nixpkgs-unstable 1.7.1
pkgs.ncpamixer Terminal mixer for PulseAudio inspired by pavucontrol nixos-unstable ??? nixpkgs-unstable 1.3.9
pkgs.pam_mount PAM module to mount volumes for a user session nixos-unstable ??? nixpkgs-unstable 2.20
pkgs.pam_mysql PAM authentication module against a MySQL database nixos-unstable ??? nixpkgs-unstable 1.0.0-beta2
pkgs.pam_pgsql Support to authenticate against PostgreSQL for PAM-enabled appliations nixos-unstable ??? nixpkgs-unstable 2020-05-05
pkgs.pam_ccreds PAM module to locally authenticate using an enterprise identity when the network is unavailable nixos-unstable ??? nixpkgs-unstable 10
pkgs.pam_mktemp PAM for login service to provide per-user private directories nixos-unstable ??? nixpkgs-unstable 1.1.1
pkgs.pam_rundir Provide user runtime directory on Linux systems nixos-unstable ??? nixpkgs-unstable 1.0.0
pkgs.pam_tmpdir PAM module for creating safe per-user temporary directories nixos-unstable ??? nixpkgs-unstable 0.09
pkgs.pam-watchid PAM plugin module that allows the Apple Watch to be used for authentication nixos-unstable ??? nixpkgs-unstable 2-unstable-2024-12-24
pkgs.apparmor-pam Mandatory access control system - PAM service nixos-unstable ??? nixpkgs-unstable 4.1.1
pkgs.opam-publish Tool to ease contributions to opam repositories nixos-unstable ??? nixpkgs-unstable 2.5.1
pkgs.pam-reattach Reattach to the user's GUI session on macOS during authentication (for Touch ID support in tmux) nixos-unstable ??? nixpkgs-unstable 1.3
pkgs.nss_pam_ldapd LDAP identity and authentication for NSS/PAM nixos-unstable ??? nixpkgs-unstable 0.9.13
pkgs.opam-installer Handle (un)installation from opam install files nixos-unstable ??? nixpkgs-unstable 2.4.1
pkgs.pam-honeycreds PAM module that sends warnings when fake passwords are used nixos-unstable ??? nixpkgs-unstable 1.9
pkgs.rspamd-trainer Grabs messages from a spam mailbox via IMAP and feeds them to Rspamd for training nixos-unstable ??? nixpkgs-unstable 2023-11-27
pkgs.pam_ssh_agent_auth PAM module for authentication through the SSH agent nixos-unstable ??? nixpkgs-unstable 0.10.4
pkgs.decode-spam-headers Script that helps you understand why your E-Mail ended up in Spam nixos-unstable ??? nixpkgs-unstable 2022-09-22-unreleased
pkgs.luaPackages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03
pkgs.google-authenticator Two-step verification, with pam module nixos-unstable ??? nixpkgs-unstable 1.11
pkgs.lua51Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03
pkgs.lua52Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03
pkgs.lua53Packages.lua-pam Lua module for PAM authentication nixos-unstable ??? nixpkgs-unstable 2015-07-03
pkgs.kdePackages.kwallet-pam PAM Integration with KWallet - Unlock KWallet when you login nixos-unstable ??? nixpkgs-unstable 6.4.5
pkgs.opensmtpd-filter-rspamd OpenSMTPD filter integration for the Rspamd daemon nixos-unstable ??? nixpkgs-unstable 0.1.8
pkgs.python312Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0
pkgs.python313Packages.pamqp RabbitMQ Focused AMQP low-level library nixos-unstable ??? nixpkgs-unstable 3.3.0
pkgs.stalwart-mail-spam-filter Secure & modern all-in-one mail server Stalwart (spam-filter module) nixos-unstable ??? nixpkgs-unstable 2.0.3
pkgs.python312Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5
pkgs.python313Packages.pypamtest Wrapper for testing PAM modules nixos-unstable ??? nixpkgs-unstable 1.1.5
pkgs.matrix-synapse-plugins.matrix-synapse-pam PAM auth provider for the Synapse Matrix server nixos-unstable ??? nixpkgs-unstable 0.1.3
pkgs.matrix-synapse-plugins.synapse-http-antispam Synapse module that forwards spam checking to an HTTP server nixos-unstable ??? nixpkgs-unstable 0.5.0
pkgs.matrix-synapse-plugins.matrix-synapse-mjolnir-antispam AntiSpam / Banlist plugin to be used with mjolnir nixos-unstable ??? nixpkgs-unstable 1.11.0
pkgs.vscode-extensions.fabiospampinato.vscode-open-in-github VS Code extension to open the current project or file in github.com nixos-unstable ??? nixpkgs-unstable 2.3.1
CVE-2025-47444 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 1 month ago WordPress GiveWP Plugin < 4.6.1 is vulnerable to Sensitive Data (PII) Exposure Insertion of Sensitive Information Into Sent Data vulnerability in Liquid Web GiveWP allows Retrieve Embedded Sensitive Data.This issue affects GiveWP: from n/a before 4.6.1. give <4.6.1 pkgs.filegive Easy p2p file sending program nixos-unstable ??? nixpkgs-unstable 2022-05-29
CVE-2025-40920 8.6 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): LOW Availability impact (A): LOW created 1 month ago Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl use insecurely generated nonces Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl generate nonces using the Perl Data::UUID library. * Data::UUID does not use a strong cryptographic source for generating UUIDs. * Data::UUID returns v3 UUIDs, which are generated from known information and are unsuitable for security, as per RFC 9562. * The nonces should be generated from a strong cryptographic source, as per RFC 7616. Catalyst-Authentication-Credential-HTTP =<1.018 pkgs.perlPackages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018 pkgs.perl538Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018 pkgs.perl540Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018
pkgs.perlPackages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018
pkgs.perl538Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018
pkgs.perl540Packages.CatalystAuthenticationCredentialHTTP HTTP Basic and Digest authentication for Catalyst nixos-unstable ??? nixpkgs-unstable 1.018
CVE-2025-6505 8.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 1 month ago Unauthorized access and impersonation can occur in versions 4.6.2.3226 and … Unauthorized access and impersonation can occur in versions 4.6.2.3226 and below of Progress Software's Hybrid Data Pipeline Server on Linux. This vulnerability allows attackers to combine credentials from different sources, potentially leading to client impersonation and unauthorized access. When OAuth Clients perform an OAuth handshake with the Hybrid Data Pipeline Server, the server accepts client credentials from both HTTP headers and request parameters. Server =<4.6.2.3226 pkgs.perlPackages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perl538Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perl540Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014 pkgs.perlPackages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perlPackages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perlPackages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perl538Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perl538Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perl538Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perl540Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43 pkgs.perl540Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3 pkgs.perl540Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35 pkgs.perlPackages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perlPackages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perlPackages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perlPackages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perlPackages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perl538Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perl540Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52 pkgs.perl538Packages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perl540Packages.NetLDAPServerTest Test Net::LDAP code nixos-unstable ??? nixpkgs-unstable 0.22 pkgs.perlPackages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perlPackages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perl538Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl538Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perl538Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perl540Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl540Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre pkgs.perl540Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1 pkgs.perlPackages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perlPackages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl538Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perl538Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perl540Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16 pkgs.perl540Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11 pkgs.perlPackages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perl538Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl540Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14 pkgs.perl538Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl540Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04 pkgs.perl538Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perl540Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02 pkgs.perlPackages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 pkgs.perl538Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 pkgs.perl540Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03 Package maintainers: 1 @anoadragon453 Andrew Morgan <andrew@amorgan.xyz>
pkgs.perlPackages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014
pkgs.perl538Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014
pkgs.perl540Packages.NetServer Extensible Perl internet server nixos-unstable ??? nixpkgs-unstable 2.014
pkgs.perlPackages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43
pkgs.perlPackages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3
pkgs.perlPackages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35
pkgs.perl538Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43
pkgs.perl538Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3
pkgs.perl538Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35
pkgs.perl540Packages.NetLDAPServer LDAP server side protocol handling nixos-unstable ??? nixpkgs-unstable 0.43
pkgs.perl540Packages.NetServerCoro Co-operative multithreaded server using Coro nixos-unstable ??? nixpkgs-unstable 1.3
pkgs.perl540Packages.ServerStarter Superdaemon for hot-deploying server programs nixos-unstable ??? nixpkgs-unstable 0.35
pkgs.perlPackages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14
pkgs.perlPackages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre
pkgs.perlPackages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1
pkgs.perl538Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52
pkgs.perl540Packages.HTTPServerSimple Lightweight HTTP server nixos-unstable ??? nixpkgs-unstable 0.52
pkgs.perlPackages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16
pkgs.perlPackages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11
pkgs.perl538Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14
pkgs.perl538Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre
pkgs.perl538Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1
pkgs.perl540Packages.NetAsyncHTTPServer Serve HTTP with IO::Async nixos-unstable ??? nixpkgs-unstable 0.14
pkgs.perl540Packages.NetServerSSPrefork Hot-deployable variant of Net::Server::PreFork nixos-unstable ??? nixpkgs-unstable 0.06pre
pkgs.perl540Packages.PerlLanguageServer Language Server and Debug Protocol Adapter for Perl nixos-unstable ??? nixpkgs-unstable 2.6.1
pkgs.perlPackages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04
pkgs.perl538Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16
pkgs.perl538Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11
pkgs.perl540Packages.HTTPServerSimplePSGI Perl Web Server Gateway Interface Specification nixos-unstable ??? nixpkgs-unstable 0.16
pkgs.perl540Packages.TestHTTPServerSimple Test::More functions for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.11
pkgs.perlPackages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02
pkgs.perl538Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14
pkgs.perl540Packages.HTTPServerSimpleMason Simple mason server nixos-unstable ??? nixpkgs-unstable 0.14
pkgs.perl538Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04
pkgs.perl540Packages.HTTPServerSimpleAuthen Authentication plugin for HTTP::Server::Simple nixos-unstable ??? nixpkgs-unstable 0.04
pkgs.perl538Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02
pkgs.perl540Packages.PlackTestExternalServer Run HTTP tests on external live servers nixos-unstable ??? nixpkgs-unstable 0.02
pkgs.perlPackages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03
pkgs.perl538Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03
pkgs.perl540Packages.CatalystXScriptServerStarman Replace the development server with Starman nixos-unstable ??? nixpkgs-unstable 0.03
CVE-2025-8283 3.7 LOW CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): NONE created 1 month ago Netavark: podman: netavark may resolve hostnames to unexpected hosts A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers. rhcos netavark container-tools:rhel8/netavark container-tools:rhel8/containers-common pkgs.netavark Rust based network stack for containers nixos-unstable ??? nixpkgs-unstable 1.16.1 Package maintainers: 2 @vdemeester Vincent Demeester <vincent@sbr.pm> @saschagrunert Sascha Grunert <mail@saschagrunert.de>
CVE-2025-3910 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): NONE created 1 month ago Org.keycloak.authentication: two factor authentication bypass A flaw was found in Keycloak. The org.keycloak.authorization package may be vulnerable to circumventing required actions, allowing users to circumvent requirements such as setting up two-factor authentication. keycloak <26.1.* <26.0.11 <25.* <26.2.2 rhbk/keycloak-rhel9 * keycloak-rhel9-container * org.keycloak.authentication rhbk/keycloak-rhel9-operator * rhbk/keycloak-operator-bundle * keycloak-rhel9-operator-container * keycloak-rhel9-operator-bundle-container * pkgs.keycloak Identity and access management for modern applications and services nixos-unstable ??? nixpkgs-unstable 26.3.4 pkgs.terraform-providers.keycloak nixos-unstable ??? nixpkgs-unstable 5.4.0 pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0 pkgs.python313Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0 Package maintainers: 4 @talyz Kim Lindberger <kim.lindberger@gmail.com> @ngerstle Nicholas Gerstle <ngerstle@gmail.com> @leona-ya Leona Maroni <nix@leona.is> @NickCao Nick Cao <nickcao@nichi.co>
pkgs.keycloak Identity and access management for modern applications and services nixos-unstable ??? nixpkgs-unstable 26.3.4
pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0
pkgs.python313Packages.python-keycloak Provides access to the Keycloak API nixos-unstable ??? nixpkgs-unstable 4.0.0