suppaftp
a super FTP/FTPS client library for Rust with full RFC support for both passive and active mode
Activity
- Latest release
- 5d ago
- Total releases
- 59
- Cadence
- ~21 days
- Last 12 months
- 16
Reach
- Stars
- 194
Details
- License
- MIT OR Apache-2.0
- First release
- Aug 22, 2021
| Version | Released | |
|---|---|---|
12.0.0
major
|
12.0.0
major
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
11.0.0
major
|
11.0.0
major
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
10.0.2
patch
|
10.0.2
patch
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
10.0.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
10.0.1
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
10.0.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
10.0.0
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
9.0.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
9.0.0
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
8.0.5
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.5
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
8.0.4
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.4
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
8.0.3
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.3
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
8.0.2
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.2
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
8.0.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.1
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
8.0.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
8.0.0
unknown
Dependencies (21)
+ 13 more
Changelog
Compare changes
|
|
7.1.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.1.0
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.7
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.7
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.6
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.6
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.5
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.5
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.4
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.4
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.3
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.3
unknown
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.2
unknown
yanked
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.2
unknown
yanked
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.1
unknown
yanked
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.1
unknown
yanked
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
7.0.0
unknown
yanked
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
7.0.0
unknown
yanked
Dependencies (22)
+ 14 more
Changelog
Compare changes
|
|
6.3.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.3.0
unknown
Dependencies (20)
+ 12 more
Changelog
Compare changes
|
|
6.2.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.2.1
unknown
Dependencies (20)
+ 12 more
Changelog
Compare changes
|
|
6.2.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.2.0
unknown
Dependencies (20)
+ 12 more
Changelog
Compare changes
|
|
6.1.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.1.1
unknown
Dependencies (20)
+ 12 more
Changelog
Compare changes
|
|
6.1.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.1.0
unknown
Dependencies (20)
+ 12 more
Changelog
Compare changes
|
|
6.0.7
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.7
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
6.0.6
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.6
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
6.0.5
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.5
unknown
Dependencies (19)
+ 11 more
Changelog
Compare changes
|
|
6.0.4
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.4
unknown
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
6.0.3
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.3
unknown
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
6.0.2
unknown
yanked
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.2
unknown
yanked
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
6.0.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.1
unknown
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
6.0.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
6.0.0
unknown
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
5.4.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.4.0
unknown
Dependencies (18)
+ 10 more
Changelog
Compare changes
|
|
5.3.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.3.1
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.3.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.3.0
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.2.2
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.2.2
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.2.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.2.1
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.2.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.2.0
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.1.2
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.1.2
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.1.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.1.1
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.1.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.1.0
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.0.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.0.1
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
5.0.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
5.0.0
unknown
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
4.7.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
4.7.0
unknown
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.6.1
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
4.6.1
unknown
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.6.0
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
4.6.0
unknown
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.5.3
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
4.5.3
unknown
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.5.2
unknown
1 CVE
RUSTSEC-2026-0271
GHSA-8mhj-xm4h-m5m6
Aug 18, 2026
FTP command injection via CRLF in control channel arguments Affected versions of An application that passes untrusted input as credentials, paths or command strings to methods such as All three clients are affected: sync, tokio and smol, with or without TLS. The flaw was corrected in version 10.0.2 (commit 194bdd1): every command line is validated before it is written to the wire and rejected with Users who cannot upgrade should reject or strip Fixed in
10.0.2
References Updated Aug 31, 2026 · Source: OSV.dev |
4.5.2
unknown
Dependencies (16)
+ 8 more
Changelog
Compare changes
|