Julialang produces a focused scientific-computing platform centered on the Julia language and its ecosystem components such as Registrator, representing a specialized rather than broadly deployed footprint. The observed vulnerability pattern reflects command-handling and memory-access concerns characteristic of a dynamic language runtime and its package-management tooling, centering on argument and command injection alongside out-of-bounds read conditions. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Julialang over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-52483CRITICAL Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General registry. Prior to version 1.9.5, if the clone URL returned by G | Jun 25, 2025 | 9.8 | 30 | NO | NO |
CVE-2021-4048CRITICAL An out-of-bounds read flaw was found in the CLARRV, DLARRV, SLARRV, and ZLARRV functions in lapack through version 3.10.0, as also used in OpenBLAS before version 0.3.18. Specially | Dec 8, 2021 | 9.1 | 30 | NO | NO |
CVE-2025-52480CRITICAL Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General registry. Prior to version 1.9.5, if the clone URL returned by G | Jun 25, 2025 | 9.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Julialang.
Media articles that mention a CVE ID that affects a product developed by Julialang — matched by CVE ID, not by vendor name.