{"id":"CVE-2021-45718","aliases":["CVE-2021-45713","CVE-2021-45714","CVE-2021-45715","CVE-2021-45716","CVE-2021-45717","CVE-2021-45719","GHSA-4qr3-m7ww-hh9g","GHSA-87xh-9q6h-r5cc","GHSA-92cx-4xm7-jr9m","GHSA-cm8g-544f-p9x9","GHSA-f6f2-3w33-54r9","GHSA-g4g4-3pqw-8m7f","GHSA-g87r-23vw-7f87","GHSA-q89g-4vhh-mvvm","RUSTSEC-2021-0128"],"url":"https://o3.security/vulnerability/CVE-2021-45718","summary":"Use After Free in rusqlite","details":"An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. rollback_hook has a use-after-free.","published":"2021-12-26T22:15:09.307Z","modified":"2026-07-09T00:06:13.170092Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":2,"affectedPackages":[{"ecosystem":"crates.io","name":"rusqlite","fixedVersion":"0.25.4"},{"ecosystem":"crates.io","name":"rusqlite","fixedVersion":"0.26.2"}],"fix":null,"references":[{"type":"REPORT","url":"https://rustsec.org/advisories/RUSTSEC-2021-0128.html"},{"type":"EVIDENCE","url":"https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/rusqlite/RUSTSEC-2021-0128.md"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-09T00:06:13.170092Z"}}