Skip to main content

Vendor archive

haskell CVEs

Beta · best-effort

4 CVEs tagged to vendor haskell1 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-4249

Published Dec 18, 2022

A vulnerability was found in xml-conduit. It has been classified as problematic. Affected is an unknown function of the file xml-conduit/src/Text/XML/Stream/Parse.hs of the compon…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-3433

Published Oct 10, 2022

The aeson library is not safe to use to consume untrusted JSON input. A remote user could abuse this flaw to produce a hash collision in the underlying unordered-containers librar…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0243

Published Dec 5, 2019

haskell-tls-extra before 0.6.1 has Basic Constraints attribute vulnerability may lead to Man in the Middle attacks on TLS connections

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1