Nixpkgs security tracker

Try the new UI
Login with GitHub

Suggestions search

With package: chirpstack-gateway-bridge

Found 10 matching suggestions

View:
Compact
Detailed
Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88774
7.0 HIGH
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): Present (P)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): Low (L)
  • Vulnerable System Impact Integrity (VI): Low (L)
  • Vulnerable System Impact Availability (VA): None (N)
  • Subsequent System Impact Confidentiality (SC): High (H)
  • Subsequent System Impact Integrity (SI): High (H)
  • Subsequent System Impact Availability (SA): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): Present (P)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): Low (L)
  • Modified Vulnerable System Impact Integrity (MVI): Low (L)
  • Modified Vulnerable System Impact Availability (MVA): None (N)
  • Modified Subsequent System Impact Confidentiality (MSC): High (H)
  • Modified Subsequent System Impact Integrity (MSI): High (H)
  • Modified Subsequent System Impact Availability (MSA): Negligible (N)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 10 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Feature policy bypass due to improper HTTP URL based expression usage

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to a feature policy bypass due to improper HTTP URL based expression usage.

Affected products

ADC
  • <13.1-64.23
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <14.1-73.37 FIPS
Gateway
  • <13.1-64.23
  • <14.1-73.37

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88776
8.8 HIGH
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): Low (L)
  • Vulnerable System Impact Integrity (VI): Low (L)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): None (N)
  • Subsequent System Impact Integrity (SI): None (N)
  • Subsequent System Impact Availability (SA): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): Low (L)
  • Modified Vulnerable System Impact Integrity (MVI): Low (L)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): Negligible (N)
  • Modified Subsequent System Impact Integrity (MSI): Negligible (N)
  • Modified Subsequent System Impact Availability (MSA): Negligible (N)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 10 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of Service

Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23  leading to unpredictable or erroneous behavior or Denial of Service

Affected products

ADC
  • <14.1-73.37 FIPS
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <13.1-64.23
Gateway
  • <14.1-73.37
  • <13.1-64.23

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88778
8.8 HIGH
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): Low (L)
  • Vulnerable System Impact Integrity (VI): High (H)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): Low (L)
  • Subsequent System Impact Integrity (SI): Low (L)
  • Subsequent System Impact Availability (SA): Low (L)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): Low (L)
  • Modified Vulnerable System Impact Integrity (MVI): High (H)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): Low (L)
  • Modified Subsequent System Impact Integrity (MSI): Low (L)
  • Modified Subsequent System Impact Availability (MSA): Low (L)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 10 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
TCP Initial Sequence Number (ISN) prediction

Predictable exact value from previous values vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23.

Affected products

ADC
  • <14.1-73.37 FIPS
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <13.1-64.23
Gateway
  • <14.1-73.37
  • <13.1-64.23

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88772
9.5 CRITICAL
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): High (H)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): High (H)
  • Vulnerable System Impact Integrity (VI): High (H)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): High (H)
  • Subsequent System Impact Integrity (SI): High (H)
  • Subsequent System Impact Availability (SA): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): High (H)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): High (H)
  • Modified Vulnerable System Impact Integrity (MVI): High (H)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): High (H)
  • Modified Subsequent System Impact Integrity (MSI): High (H)
  • Modified Subsequent System Impact Availability (MSA): High (H)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 11 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Memory overflow vulnerability leading to Remote Code Execution or Denial of Service

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service

Affected products

ADC
  • <13.1-64.23
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <14.1-73.37 FIPS
Gateway
  • <13.1-64.23
  • <14.1-73.37

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88775
8.8 HIGH
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): Low (L)
  • Vulnerable System Impact Integrity (VI): Low (L)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): None (N)
  • Subsequent System Impact Integrity (SI): None (N)
  • Subsequent System Impact Availability (SA): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): Low (L)
  • Modified Vulnerable System Impact Integrity (MVI): Low (L)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): Negligible (N)
  • Modified Subsequent System Impact Integrity (MSI): Negligible (N)
  • Modified Subsequent System Impact Availability (MSA): Negligible (N)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 11 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of Service

Memory overflow vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of Service

Affected products

ADC
  • <14.1-73.37 FIPS
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <13.1-64.23
Gateway
  • <14.1-73.37
  • <13.1-64.23

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88773
9.3 CRITICAL
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): None (N)
  • Vulnerable System Impact Integrity (VI): High (H)
  • Vulnerable System Impact Availability (VA): None (N)
  • Subsequent System Impact Confidentiality (SC): High (H)
  • Subsequent System Impact Integrity (SI): High (H)
  • Subsequent System Impact Availability (SA): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): None (N)
  • Modified Vulnerable System Impact Integrity (MVI): High (H)
  • Modified Vulnerable System Impact Availability (MVA): None (N)
  • Modified Subsequent System Impact Confidentiality (MSC): High (H)
  • Modified Subsequent System Impact Integrity (MSI): High (H)
  • Modified Subsequent System Impact Availability (MSA): Negligible (N)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 11 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
HTTP Request Smuggling

Inconsistent interpretation of HTTP requests ('HTTP Request/Response smuggling') vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1-37.279 and NDcPP; Gateway: before 14.1-73.37 FIPS and before 13.1-64.23.

Affected products

ADC
  • <14.1-73.37 FIPS
  • <13.1-37.279 and NDcPP
  • <14.1-73.37
  • <13.1-64.23
Gateway
  • <14.1-73.37 FIPS
  • <13.1-64.23

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88771
9.5 CRITICAL
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): Present (P)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): High (H)
  • Vulnerable System Impact Integrity (VI): High (H)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): High (H)
  • Subsequent System Impact Integrity (SI): High (H)
  • Subsequent System Impact Availability (SA): High (H)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): Present (P)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): High (H)
  • Modified Vulnerable System Impact Integrity (MVI): High (H)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): High (H)
  • Modified Subsequent System Impact Integrity (MSI): High (H)
  • Modified Subsequent System Impact Availability (MSA): High (H)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 11 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands

Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.

Affected products

ADC
  • <13.1-64.23
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <14.1-73.37 FIPS
Gateway
  • <13.1-64.23
  • <14.1-73.37

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-88777
8.8 HIGH
  • CVSS version (CVSS): 4.0
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Attack Requirement (AT): None (N)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): None (N)
  • Vulnerable System Impact Confidentiality (VC): Low (L)
  • Vulnerable System Impact Integrity (VI): Low (L)
  • Vulnerable System Impact Availability (VA): High (H)
  • Subsequent System Impact Confidentiality (SC): None (N)
  • Subsequent System Impact Integrity (SI): None (N)
  • Subsequent System Impact Availability (SA): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Attack Requirement (MAT): None (N)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): None (N)
  • Modified Vulnerable System Impact Confidentiality (MVC): Low (L)
  • Modified Vulnerable System Impact Integrity (MVI): Low (L)
  • Modified Vulnerable System Impact Availability (MVA): High (H)
  • Modified Subsequent System Impact Confidentiality (MSC): Negligible (N)
  • Modified Subsequent System Impact Integrity (MSI): Negligible (N)
  • Modified Subsequent System Impact Availability (MSA): Negligible (N)
  • Safety (S): Not Defined (X)
  • Automatable (AU): Not Defined (X)
  • Recovery (R): Not Defined (X)
  • Value Density (V): Not Defined (X)
  • Vulnerability Response Effort (RE): Not Defined (X)
  • Provider Urgency (U): Not Defined (X)
  • Confidentiality Req. (CR): Not Defined (X)
  • Integrity Req. (IR): Not Defined (X)
  • Availability Req. (AR): Not Defined (X)
  • Exploit Maturity (E): Not Defined (X)
updated 11 hours ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of Service

Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23  leading to unpredictable or erroneous behavior or Denial of Service

Affected products

ADC
  • <14.1-73.37 FIPS
  • <13.1.37.279 FIPS and NDcPP
  • <14.1-73.37
  • <13.1-64.23
Gateway
  • <14.1-73.37
  • <13.1-64.23

Matching in nixpkgs

pkgs.adcli

Helper library and tools for Active Directory client operations

  • nixos-unstable -
  • nixos-26.05 -

pkgs.radcli

Simple RADIUS client library

  • nixos-unstable -
    • nixos-unstable-small 1.5.2
  • nixos-26.05 -
    • nixos-26.05-small 1.5.1

pkgs.shadcn

Beautifully designed components that you can copy and paste into your apps

  • nixos-unstable -
  • nixos-26.05 -
    • nixos-26.05-small 3.7.0

pkgs.tradcpp

Traditional (K&R-style) C macro preprocessor

  • nixos-unstable -
    • nixos-unstable-small 0.5.3
  • nixos-26.05 -
    • nixos-26.05-small 0.5.3

pkgs.badchars

HEX badchar generator for different programming languages

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.threadcat

Converts a Mastodon thread to Markdown, and downloads all contained media files

  • nixos-unstable -
    • nixos-unstable-small 0.1.2
  • nixos-26.05 -
    • nixos-26.05-small 0.1.2

pkgs.xmonadctl

Send commands to a running instance of xmonad

  • nixos-unstable -
  • nixos-26.05 -

pkgs.adcskiller

Python-based tool designed to automate the process of discovering and exploiting Active Directory Certificate Services (ADCS) vulnerabilities

pkgs.mcp-gateway

Universal MCP Gateway - Single-port multiplexing with Meta-MCP for ~95% context token savings

  • nixos-unstable -
    • nixos-unstable-small 3.5.1
  • nixos-26.05 -

pkgs.grpc-gateway

GRPC to JSON proxy generator plugin for Google Protocol Buffers

  • nixos-unstable -
  • nixos-26.05 -

pkgs.janus-gateway

General purpose WebRTC server

  • nixos-unstable -
    • nixos-unstable-small 1.4.1
  • nixos-26.05 -
    • nixos-26.05-small 1.4.1

pkgs.ingress2gateway

Convert Ingress resources to Gateway API resources

  • nixos-unstable -
    • nixos-unstable-small 0.5.0
  • nixos-26.05 -
    • nixos-26.05-small 0.5.0

pkgs.firezone-gateway

WireGuard tunnel server for the Firezone zero-trust access platform

  • nixos-unstable -
    • nixos-unstable-small 1.6.1
  • nixos-26.05 -

pkgs.jetbrains.gateway

Remote development for JetBrains products

  • nixos-unstable -
  • nixos-26.05 -

pkgs.prometheus-pushgateway

Allows ephemeral and batch jobs to expose metrics to Prometheus

  • nixos-unstable -
  • nixos-26.05 -

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.home-assistant-custom-components.xiaomi_gateway3

Home Assistant custom component for control Xiaomi Multimode Gateway (aka Gateway 3), Xiaomi Multimode Gateway 2, Aqara Hub E1 on default firmwares over LAN

  • nixos-unstable -
    • nixos-unstable-small 4.2.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.4

Package maintainers

Untriaged
Permalink CVE-2026-78136
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): Required (R)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month ago Activity log
  • Created suggestion
chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV …

chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV data. This occurs in _clean_tmode in drivers/kenwood_itm.py.

Affected products

CHIRP
  • <39178dbfc4fece083ab9ed20286d6ae3a91a718e

Matching in nixpkgs

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.chirpstack-mqtt-forwarder

Forwarder which can be installed on the gateway to forward LoRa data over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.6.1
  • nixos-26.05 -
    • nixos-26.05-small 4.5.1

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-71282
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
updated 1 month, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
ChirpStack SQLite Backend SQL Injection via Device Tag Key in ListDevices Filter

ChirpStack's SQLite-backend device tag filtering (chirpstack/src/storage/device.rs, in both get_count() and list()) interpolates the user-supplied tag KEY directly into a raw SQL fragment via Rust's format!() macro (`dsl::sql::<Bool>(&format!("device.tags->>'{}' =", k)).bind::<Text, _>(v)`), while only the tag VALUE is safely parameter-bound via Diesel's .bind(). An authenticated user with device-list access can inject SQL via a crafted tag key when the SQLite backend (chirpstack-sqlite package) is in use; the PostgreSQL backend is unaffected as it uses Diesel's native JSONB containment operator instead of raw SQL string formatting.

Affected products

chirpstack
  • =<4.19.0-test.5

Matching in nixpkgs

Package maintainers