WebAssembly records
45 published records for vendor webassembly.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 51.1%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-617 Reachable Assertion9
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer8
- CWE-125 Out-of-bounds Read6
- CWE-476 NULL Pointer Dereference5
- CWE-787 Out-of-bounds Write5
- CWE-770 Allocation of Resources Without Limits or Throttling2
The weakness classes this vendor ships most often: where to look.
CWEAll records
45 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2022-43281No exploit | wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector<wabt::Type, std::allocator<wabt::Type>>::size() webassembly · wasm · CWE-787 | High7.8 | — | 0.3% | Oct 28, 2022 |
31Monitor | CVE-2023-27117No exploit | WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.webassembly · webassembly · CWE-787 | High7.8 | — | 0.3% | Mar 9, 2023 |
30Monitor | CVE-2021-45290No exploit | A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.webassembly · binaryen · CWE-617 | High7.5 | — | 1.5% | Dec 21, 2021 |
30Monitor | CVE-2023-31670No exploit | An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (Dwebassembly · webassembly binary toolkit | High7.5 | — | 0.8% | May 22, 2023 |
28Monitor | CVE-2022-43282No exploit | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.webassembly · wabt · CWE-125 | High7.1 | — | 0.3% | Oct 28, 2022 |
28Monitor | CVE-2022-43280No exploit | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallExpr->GetReturnCallDropKeepCount.webassembly · wabt · CWE-125 | High7.1 | — | 0.3% | Oct 28, 2022 |
26Monitor | CVE-2019-7662No exploit | An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22.webassembly · binaryen · CWE-617 | Medium6.5 | — | 1.6% | Feb 9, 2019 |
26Monitor | CVE-2019-7703No exploit | In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp.webassembly · binaryen · CWE-416 | Medium6.5 | — | 1.5% | Feb 10, 2019 |
26Monitor | CVE-2019-15759No exploit | An issue was discovered in Binaryen 1.38.32.webassembly · binaryen · CWE-476 | Medium6.5 | — | 1.3% | Aug 28, 2019 |
26Monitor | CVE-2019-15758No exploit | An issue was discovered in Binaryen 1.38.32.webassembly · binaryen · CWE-617 | Medium6.5 | — | 1.2% | Aug 28, 2019 |
26Monitor | CVE-2019-7153No exploit | A NULL pointer dereference was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::WasmBinwebassembly · binaryen · CWE-476 | Medium6.5 | — | 1.2% | Jan 28, 2019 |
26Monitor | CVE-2019-7704No exploit | wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demonwebassembly · binaryen · CWE-770 | Medium6.5 | — | 1.2% | Feb 10, 2019 |
26Monitor | CVE-2019-7151No exploit | A NULL pointer dereference was discovered in wasm::Module::getFunctionOrNull in wasm/wasm.cpp in Binaryen 1.38.22.webassembly · binaryen · CWE-476 | Medium6.5 | — | 1.2% | Jan 28, 2019 |
26Monitor | CVE-2019-7700No exploit | A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.22.webassembly · binaryen · CWE-125 | Medium6.5 | — | 1.2% | Feb 10, 2019 |
26Monitor | CVE-2019-7152No exploit | A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::Wasmwebassembly · binaryen · CWE-125 | Medium6.5 | — | 1.2% | Jan 28, 2019 |
26Monitor | CVE-2019-7701No exploit | A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22.webassembly · binaryen · CWE-125 | Medium6.5 | — | 1.2% | Feb 10, 2019 |
26Monitor | CVE-2019-7702No exploit | A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22.webassembly · binaryen · CWE-476 | Medium6.5 | — | 1.2% | Feb 10, 2019 |
26Monitor | CVE-2019-7154No exploit | The main function in tools/wasm2js.cpp in Binaryen 1.38.22 has a heap-based buffer overflow because Emscripten is misused, triggering an errwebassembly · binaryen · CWE-787 | Medium6.5 | — | 1.1% | Jan 28, 2019 |
26Monitor | CVE-2020-18382No exploit | Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26.webassembly · binaryen · CWE-787 | Medium6.5 | — | 0.6% | Aug 22, 2023 |
26Monitor | CVE-2020-18378No exploit | A NULL pointer dereference was discovered in SExpressionWasmBuilder::makeBlock in wasm/wasm-s-parser.c in Binaryen 1.38.26.webassembly · binaryen · CWE-476 | Medium6.5 | — | 0.6% | Aug 22, 2023 |
22Monitor | CVE-2021-45293No exploit | A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinaryBuilder::visitLet.webassembly · binaryen · CWE-119 | Medium5.5 | — | 0.8% | Dec 21, 2021 |
22Monitor | CVE-2021-46052No exploit | A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.webassembly · binaryen · CWE-617 | Medium5.5 | — | 0.7% | Jan 10, 2022 |
22Monitor | CVE-2021-46053No exploit | A Denial of Service vulnerability exists in Binaryen 103.webassembly · binaryen · CWE-119 | Medium5.5 | — | 0.7% | Jan 10, 2022 |
22Monitor | CVE-2021-46054No exploit | A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).webassembly · binaryen · CWE-617 | Medium5.5 | — | 0.7% | Jan 10, 2022 |
22Monitor | CVE-2021-46048No exploit | A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunctions.webassembly · binaryen · CWE-617 | Medium5.5 | — | 0.7% | Jan 10, 2022 |
- CVE-2022-4328131Monitor
wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector<wabt::Type, std::allocator<wabt::Type>>::size()
HighCVSS 7.8No exploitEPSS 0%webassembly · wasmOct 28, 2022
- CVE-2023-2711731Monitor
WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.
HighCVSS 7.8No exploitEPSS 0%webassembly · webassemblyMar 9, 2023
- CVE-2021-4529030Monitor
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.
HighCVSS 7.5No exploitEPSS 1%webassembly · binaryenDec 21, 2021
- CVE-2023-3167030Monitor
An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (D
HighCVSS 7.5No exploitEPSS 1%webassembly · webassembly binary toolkitMay 22, 2023
- CVE-2022-4328228Monitor
wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.
HighCVSS 7.1No exploitEPSS 0%webassembly · wabtOct 28, 2022
- CVE-2022-4328028Monitor
wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallExpr->GetReturnCallDropKeepCount.
HighCVSS 7.1No exploitEPSS 0%webassembly · wabtOct 28, 2022
- CVE-2019-766226Monitor
An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22.
MediumCVSS 6.5No exploitEPSS 2%webassembly · binaryenFeb 9, 2019
- CVE-2019-770326Monitor
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenFeb 10, 2019
- CVE-2019-1575926Monitor
An issue was discovered in Binaryen 1.38.32.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenAug 28, 2019
- CVE-2019-1575826Monitor
An issue was discovered in Binaryen 1.38.32.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenAug 28, 2019
- CVE-2019-715326Monitor
A NULL pointer dereference was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::WasmBin
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenJan 28, 2019
- CVE-2019-770426Monitor
wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demon
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenFeb 10, 2019
- CVE-2019-715126Monitor
A NULL pointer dereference was discovered in wasm::Module::getFunctionOrNull in wasm/wasm.cpp in Binaryen 1.38.22.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenJan 28, 2019
- CVE-2019-770026Monitor
A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.22.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenFeb 10, 2019
- CVE-2019-715226Monitor
A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::Wasm
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenJan 28, 2019
- CVE-2019-770126Monitor
A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenFeb 10, 2019
- CVE-2019-770226Monitor
A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenFeb 10, 2019
- CVE-2019-715426Monitor
The main function in tools/wasm2js.cpp in Binaryen 1.38.22 has a heap-based buffer overflow because Emscripten is misused, triggering an err
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenJan 28, 2019
- CVE-2020-1838226Monitor
Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenAug 22, 2023
- CVE-2020-1837826Monitor
A NULL pointer dereference was discovered in SExpressionWasmBuilder::makeBlock in wasm/wasm-s-parser.c in Binaryen 1.38.26.
MediumCVSS 6.5No exploitEPSS 1%webassembly · binaryenAug 22, 2023
- CVE-2021-4529322Monitor
A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinaryBuilder::visitLet.
MediumCVSS 5.5No exploitEPSS 1%webassembly · binaryenDec 21, 2021
- CVE-2021-4605222Monitor
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.
MediumCVSS 5.5No exploitEPSS 1%webassembly · binaryenJan 10, 2022
- CVE-2021-4605322Monitor
A Denial of Service vulnerability exists in Binaryen 103.
MediumCVSS 5.5No exploitEPSS 1%webassembly · binaryenJan 10, 2022
- CVE-2021-4605422Monitor
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).
MediumCVSS 5.5No exploitEPSS 1%webassembly · binaryenJan 10, 2022
- CVE-2021-4604822Monitor
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunctions.
MediumCVSS 5.5No exploitEPSS 1%webassembly · binaryenJan 10, 2022