CVE-2021-26953: Postscript Project Postscript
High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.
An issue was discovered in the postscript crate before 0.14.0 for Rust. It might allow attackers to obtain sensitive information from uninitialized memory locations via a user-provided Read implementation.
Affected products
- Postscript Project Postscript: before 0.14.0 (fixed in 0.14.0)
Published 2021-02-09. Last modified 2026-06-17.