libp2p-rendezvous
crates.io2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting libp2p-rendezvouspage 1 of 1
- CVE-2026-35405HIGHCVSS 7.5EG 7.5✓ Fixed in 0.17.12026-04-07
libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, libp2p-rendezvous server has no limit on how many namespaces a single peer can register. A malicious peer can just keep registering …
- CVE-2026-35457HIGHCVSS 8.2EG 8.2✓ Fixed in 0.17.12026-04-07
libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, the rendezvous server stores pagination cookies without bounds. An unauthenticated peer can repeatedly issue DISCOVER requests and fo…
Check whether libp2p-rendezvous is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for libp2p-rendezvous CVEs against the assets you own.
Start Free Scan →