servo security advisories
4 threat alerts tracking vulnerabilities and security advisories that affect servo products.
Vulnios monitors servo CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent servo security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2021-25900 — servo — smallvec
An issue was discovered in the smallvec crate before 0.6.14 and 1.x before 1.6.1 for Rust. There is a heap-based buffer overflow in SmallVec::insert_many.
criticalCVE-2021-25900Critical Vulnerability: CVE-2019-15551 — servo — smallvec
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is a double free for certain grow attempts with the current capacity.
criticalCVE-2019-15551Critical Vulnerability: CVE-2019-15554 — servo — smallvec
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.
criticalCVE-2019-15554Critical Vulnerability: CVE-2018-20991 — servo — smallvec
An issue was discovered in the smallvec crate before 0.6.3 for Rust. The Iterator implementation mishandles destructors, leading to a double free.
criticalCVE-2018-20991
Track servo exposure across your environment
Vulnios automatically cross-references your asset inventory against new servo CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan