CVE-2020-36204: Im Project Im
Medium severity, CVSS 4.7. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in the im crate through 2020-11-09 for Rust. Because TreeFocus does not have bounds on its Send trait or Sync trait, a data race can occur.
Affected products
- Im Project Im: up to and including 2020-11-09
Published 2021-01-26. Last modified 2026-06-17.