Vulnerability RUSTSEC-2026-0313

Medium Risk
MEDIUM RISK
CVSS Score: 6.2
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
4 days ago
September 24, 2026 at 12:00 PM UTC
Outgoing HTTP body write allows guest-driven host memory exhaustion
9.0.0 - 36.0.15
9.0.0 - 36.0.15

Summary

Outgoing HTTP body write allows guest-driven host memory exhaustion

Details

This is an entry in the RustSec database for the Wasmtime security advisory located at https://github.com/bytecodealliance/wasmtime/security/advisories/GHSA-c9gc-w9vx-w86p For more information see the GitHub-hosted security advisory.

Impacted packages

Timeline

Published
4 days ago
September 24, 2026 at 12:00 PM UTC
Fixed (48.0.3)
4 days ago
September 24, 2026 at 06:59 PM UTC
Fixed (36.0.16)
4 days ago
September 24, 2026 at 07:11 PM UTC
Fixed (49.0.1)
4 days ago
September 24, 2026 at 07:20 PM UTC
Last Modified
2 hours ago
September 29, 2026 at 07:45 AM UTC