RISC Zero zero-knowledge VM
risc0-zkvm-platform has critical vulnerabilities — do not use
Update to >= 3.0.3 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| critical | CVE-2025-61588 | risc0 vulnerable to arbitrary code execution in guest via memory safety failure in `sys_read` | 3.0.3 |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/cargo/risc0-zkvm-platformFirst published · 2022-05-15T01:02:10.833270Z
Last updated · 2026-02-03T00:04:01.991460Z