Debian Devscripts
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Debian Devscripts.
By the Year
In 2026 there have been 0 vulnerabilities in Debian Devscripts. Last year, in 2025 Devscripts had 1 security vulnerability published. Right now, Devscripts is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 1 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 0 | 0.00 |
| 2021 | 0 | 0.00 |
| 2020 | 0 | 0.00 |
| 2019 | 0 | 0.00 |
| 2018 | 1 | 9.80 |
It may take a day or so for new Devscripts vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Debian Devscripts Security Vulnerabilities
uscan in devscripts Skips OpenPGP Verification - Supply Chain Risk
CVE-2025-8454
- August 01, 2025
It was discovered that uscan, a tool to scan/watch upstream sources for new releases of software, included in devscripts (a collection of scripts to make the life of a Debian Package maintainer easier), skips OpenPGP verification if the upstream source is already downloaded from a previous run even if the verification failed back then.
scripts/grep-excuses.pl in Debian devscripts through 2.18.3 allows code execution through unsafe YAML loading because YAML::Syck is used without a configuration
CVE-2018-13043
9.8 - Critical
- July 01, 2018
scripts/grep-excuses.pl in Debian devscripts through 2.18.3 allows code execution through unsafe YAML loading because YAML::Syck is used without a configuration that prevents unintended blessing.
Code Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Debian Devscripts or by Debian? Click the Watch button to subscribe.