libcrux-aesgcm is vulnerable to Use of Unmaintained Third Party Components
80
High Risk
The libcrux-aesgcm crate has been renamed to libcrux-aes and is no longer maintained, with version 0.0.8 being the final release under the old name. Development continues in libcrux-aes starting from version 0.0.9. Because libcrux-aesgcm is unmaintained and vulnerabilities have already been identified in the discontinued crate, users should migrate to libcrux-aes to receive security fixes and future updates.
You are affected if you are using this package.
libcrux-aesgcm is vulnerable to Use of Unmaintained Third Party Components in all versions.
Remove any libcrux-aesgcm package from your application. Please take a look at libcrux-aes as an alternative.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant