cargo package reportIs multi_mut safe?
1 known vulnerability.
// reach0 direct dependencies
none carry a known advisory
0 packages depend on it
an advisory here reaches each of them
// ai model usageTracked for PyPI packages. HuggingFace models declare Python dependencies, so cargo packages are not covered.
epsschance of exploitation in 30 days
xyz scoreCyberXYZ composite out of 10
fig. 01 — RUSTSEC-2020-0169, the advisory selected below
// 1 advisories
RUSTSEC-2020-0169
UNKNOWNLast release was about 6 years ago.
There is an outstanding soundness issue.
The maintainer has not responded for two years to the existing soundness issue.
Rust compiler has enabled errors relating to LLVM noalias rules and may not compile anymore where as the old compiler versions had turned these off.
The maintainer has stated:
> I will take no responsibility of undefined behaviour possibly caused by this crate.
This crate may or may not be suitable for use anymore given the outstanding issues.
Checked 2026-10-04 at 01:07 UTC. The most recent advisory here was published 2020-02-07. Updated continuously from NVD, GHSA, OSV and CNA feeds.