PT-2026-48942 · Crates.Io · Exploration

Published

2026-06-02

·

Updated

2026-06-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
A method within the exploration crate attempted to download and execute a payload from a remote site.
The malicious crate had 1 version published on 2026-06-02, approximately 1 hour before removal, and had no evidence of actual usage. This crate had no dependencies on crates.io.
Thanks to Kirill Boychenko from the Socket Threat Research Team for reporting this crate.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

RUSTSEC-2026-0155

Affected Products

Exploration