CVE-2019-15554: Servo Smallvec
Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.
Affected products
- Servo Smallvec: from 0.6.3, before 0.6.10 (fixed in 0.6.10)
Published 2019-08-26. Last modified 2026-06-17.