{"id":"CGA-vjc8-288c-2pwp","modified":"2026-09-07T01:52:13.352953609Z","published":"2026-04-24T00:20:51Z","upstream":["CVE-2021-45707","GHSA-76w9-p8mg-j927"],"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-wgrg-5h56-jg27"},{"type":"ADVISORY","url":"https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/nix/RUSTSEC-2021-0119.md"},{"type":"REPORT","url":"https://rustsec.org/advisories/RUSTSEC-2021-0119.html"}],"affected":[{"package":{"name":"toda","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/toda?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"component_version":"0.18.0","component_type":"rust-crate","component_location":"/usr/bin/toda","component_purl":"pkg:cargo/nix@0.18.0","latest_event_status":"pending_upstream_fix","latest_event_timestamp":"2026-07-02T11:56:21Z","component_name":"nix"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-vjc8-288c-2pwp.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}