This project might be open to known security vulnerabilities, which can be prevented by tightening the version range of affected dependencies. Find detailed information at the bottom.

Crate wasmtime-wasi

Dependencies

(7 total, 5 outdated, 1 possibly insecure)

CrateRequiredLatestStatus
 anyhow^1.0.221.0.100up to date
 libc^0.2.600.2.177up to date
 wasi-cap-std-sync=9.0.417.0.3out of date
 wasi-common=9.0.438.0.4out of date
 wasi-tokio=9.0.417.0.3out of date
 wasmtime ⚠️^9.0.438.0.4out of date
 wiggle=9.0.438.0.4out of date

Security Vulnerabilities

wasmtime: Miscompilation of wasm `i64x2.shr_s` instruction with constant input on x86\_64

RUSTSEC-2023-0091

This is an entry in the RustSec database for the Wasmtime security advisory located at https://github.com/bytecodealliance/wasmtime/security/advisories/GHSA-gw5p-q8mj-p7gh. For more information see the GitHub-hosted security advisory.

wasmtime: Wasmtime doesn't fully sandbox all the Windows device filenames

RUSTSEC-2024-0438

This is an entry in the RustSec database for the Wasmtime security advisory located at https://github.com/bytecodealliance/wasmtime/security/advisories/GHSA-c2f5-jxjv-2hh8. For more information see the GitHub-hosted security advisory.

wasmtime: Unsound API access to a WebAssembly shared linear memory

RUSTSEC-2025-0118

This is an entry in the RustSec database for the Wasmtime security advisory located at https://github.com/bytecodealliance/wasmtime/security/advisories/GHSA-hc7m-r6v8-hg9q For more information see the GitHub-hosted security advisory.