godotengine records
4 published records for vendor godotengine.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-131 Incorrect Calculation of Buffer Size1
- CWE-190 Integer Overflow or Wraparound1
- CWE-502 Deserialization of Untrusted Data1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2019-10069No exploit | In Godot through 3.1, remote code execution is possible due to the deserialization policy not being applied correctly.godotengine · godot · CWE-502 | Critical9.8 | — | 3.4% | May 31, 2019 |
31Monitor | CVE-2018-1000224Proof of concept | Godot Engine version All versions prior to 2.1.5, all 3.0 versions prior to 3.0.6.godotengine · godot · CWE-131 | High7.5 | — | 3.8% | Aug 20, 2018 |
31Monitor | CVE-2021-26825No exploit | An integer overflow issue exists in Godot Engine up to v3.2 that can be triggered when loading specially crafted.TGA image files.godotengine · godot engine · CWE-190 | High7.8 | — | 1.5% | Feb 8, 2021 |
31Monitor | CVE-2021-26826No exploit | A stack overflow issue exists in Godot Engine up to v3.2 and is caused by improper boundary checks when loading .TGA image files.godotengine · godot engine · CWE-787 | High7.8 | — | 1.5% | Feb 8, 2021 |
- CVE-2019-1006940Plan
In Godot through 3.1, remote code execution is possible due to the deserialization policy not being applied correctly.
CriticalCVSS 9.8No exploitEPSS 3%godotengine · godotMay 31, 2019
- CVE-2018-100022431Monitor
Godot Engine version All versions prior to 2.1.5, all 3.0 versions prior to 3.0.6.
HighCVSS 7.5Proof of conceptEPSS 4%godotengine · godotAug 20, 2018
- CVE-2021-2682531Monitor
An integer overflow issue exists in Godot Engine up to v3.2 that can be triggered when loading specially crafted.TGA image files.
HighCVSS 7.8No exploitEPSS 2%godotengine · godot engineFeb 8, 2021
- CVE-2021-2682631Monitor
A stack overflow issue exists in Godot Engine up to v3.2 and is caused by improper boundary checks when loading .TGA image files.
HighCVSS 7.8No exploitEPSS 2%godotengine · godot engineFeb 8, 2021