Vulnerability DatabaseRUSTSEC-2025-0078

RUSTSEC-2025-0078
Rust vulnerability analysis and mitigation

Overview

RUSTSEC-2025-0078 is a security vulnerability affecting rust-unic, a Unicode processing library for Rust. The issue was discovered in September 2025 when it was identified that the library had become unmaintained, with the last commit being approximately 5 years prior to discovery. The vulnerability primarily stems from outdated Unicode information causing compatibility issues in applications using the library (Github Issue).

Technical details

The vulnerability exists in the rust-unic library hosted at https://github.com/open-i18n/rust-unic. The core issue relates to outdated Unicode implementations that can cause compatibility problems in dependent applications. This has been specifically observed causing issues in URL pattern matching implementations (Github Issue).

Impact

The outdated Unicode information in the library can cause compatibility issues in applications that rely on rust-unic for Unicode processing. This has been documented to affect URL pattern matching functionality in dependent projects (Github Issue).

Additional resources


SourceThis report was generated using AI

Related Rust vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-22863CRITICAL9.2
  • RustRust
  • deno
NoYesJan 15, 2026
CVE-2026-23519HIGH8.9
  • RustRust
  • cmov
NoYesJan 15, 2026
RUSTSEC-2026-0003HIGH8.9
  • RustRust
  • cmov
NoYesJan 14, 2026
CVE-2026-22864HIGH8.1
  • RustRust
  • deno
NoYesJan 15, 2026
CVE-2026-22782LOW2.9
  • RustRust
  • rustfs
NoYesJan 16, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management