Devscripts Debian Devscripts

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Debian Devscripts.

By the Year

In 2026 there have been 0 vulnerabilities in Debian Devscripts. Last year, in 2025 Devscripts had 1 security vulnerability published. Right now, Devscripts is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 1 0.00
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 1 9.80

It may take a day or so for new Devscripts vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Debian Devscripts Security Vulnerabilities

uscan in devscripts Skips OpenPGP Verification - Supply Chain Risk
CVE-2025-8454 - August 01, 2025

It was discovered that uscan, a tool to scan/watch upstream sources for new releases of software, included in devscripts (a collection of scripts to make the life of a Debian Package maintainer easier), skips OpenPGP verification if the upstream source is already downloaded from a previous run even if the verification failed back then.

scripts/grep-excuses.pl in Debian devscripts through 2.18.3 allows code execution through unsafe YAML loading because YAML::Syck is used without a configuration
CVE-2018-13043 9.8 - Critical - July 01, 2018

scripts/grep-excuses.pl in Debian devscripts through 2.18.3 allows code execution through unsafe YAML loading because YAML::Syck is used without a configuration that prevents unintended blessing.

Code Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Debian Devscripts or by Debian? Click the Watch button to subscribe.

Debian
Vendor

subscribe