Known Vulnerabilities for Nim by Nim-lang
Listed below are 10 of the newest known vulnerabilities associated with "Nim" by "Nim-lang".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-46872 json | An issue was discovered in Nim before 1.6.2. The RST module of the Nim language stdlib, as used in NimForum and other product... | 6.1 - MEDIUM | 2023-01-13 | 2023-01-23 |
| CVE-2021-41259 json | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CV... | Not Provided | 2021-11-12 | 2023-11-07 |
| CVE-2021-29495 json | Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TLS cer... | 7.5 - HIGH | 2021-05-07 | 2021-05-14 |
| CVE-2021-21374 json | Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, "nimb... | 8.1 - HIGH | 2021-03-26 | 2021-03-30 |
| CVE-2021-21373 json | Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, "nimb... | 5.9 - MEDIUM | 2021-03-26 | 2021-03-31 |
| CVE-2021-21372 json | Nimble is a package manager for the Nim programming language. In Nim release version before versions 1.2.10 and 1.4.4, Nimble... | 8.8 - HIGH | 2021-03-26 | 2022-10-24 |
| CVE-2020-15694 json | In Nim 1.2.4, the standard library httpClient fails to properly validate the server response. For example, httpClient.get().c... | 7.5 - HIGH | 2020-08-14 | 2021-02-08 |
| CVE-2020-15693 json | In Nim 1.2.4, the standard library httpClient is vulnerable to a CR-LF injection in the target URL. An injection is possible ... | 6.5 - MEDIUM | 2020-08-14 | 2021-02-08 |
| CVE-2020-15692 json | In Nim 1.2.4, the standard library browsers mishandles the URL argument to browsers.openDefaultBrowser. This argument can be ... | 9.8 - CRITICAL | 2020-08-14 | 2021-02-08 |
| CVE-2020-15690 json | In Nim before 1.2.6, the standard library asyncftpclient lacks a check for whether a message contains a newline character. | 9.8 - CRITICAL | 2021-01-30 | 2021-02-09 |