lru
An implementation of a LRU cache
Activity
- Latest release
- 1w ago
- Total releases
- 75
- Cadence
- ~39 days
- Last 12 months
- 9
Reach
- Downloads
- 330.0M
- Stars
- 834
Details
- License
- MIT
- First release
- Dec 31, 2016
| Version | Released | |
|---|---|---|
0.18.4
patch
| ||
0.18.3
patch
| ||
0.18.2
patch
| ||
0.18.1
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.18.0
minor
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.17.0
minor
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.16.4
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.16.3
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.16.2
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.16.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.16.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.15.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.14.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.13.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.5
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.4
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.3
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.2
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.12.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.11.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.11.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.10.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.10.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.9.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
GHSA-rhfx-m35p-ff5j
RUSTSEC-2026-0002
Jan 07, 2026
`IterMut` violates Stacked Borrows by invalidating internal pointer
Low
Network
Low
None
None
Affected versions of this crate contain a soundness issue in the This invalidates the shared pointer held by the internal Fixed in
0.16.3
References Updated Sep 10, 2026 · Source: OSV.dev | ||
0.8.1
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.8.0
minor
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.8
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.7
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.6
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.5
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.4
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.3
patch
yanked
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.2
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.1
patch
1 CVE
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev | ||
0.7.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.6
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.5
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.4
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.3
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.2
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.6.0
minor
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.5.3
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.5.2
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.5.1
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.5.0
minor
yanked
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.4.5
patch
yanked
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.4.4
patch
yanked
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
0.4.3
patch
2 CVEs
RUSTSEC-2026-0253
May 12, 2026
Potential use-after-free due to lack of panic safety in `LruCache::pop()`
A subsequent cache operation that triggers eviction can then dereference these dangling pointers:
Impact
Both types of undefined behavior can be invoked in safe Rust, but only if unwinding panics are enabled and FixFixed in Fixed in
0.18.2
References Updated Aug 11, 2026 · Source: OSV.dev
CVE-2021-45720
GHSA-qqmc-hwqp-8g2w
GHSA-v362-2895-h9r2
RUSTSEC-2021-0130
Jun 17, 2022
Use after free in lru crate
High
Lru crate has use after free vulnerability. Lru crate has two functions for getting an iterator. Both iterators give references to key and value. Calling specific functions, like pop(), will remove and free the value, and but it's still possible to access the reference of value which is already dropped causing use after free. Fixed in
0.7.1
References Updated Nov 08, 2023 · Source: OSV.dev |