Skip to content
Noroxi

weechat records

7 published records for vendor weechat.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

7 records
  • irc_mode_channel_update in plugins/irc/irc-mode.c in WeeChat through 2.7 allows remote attackers to cause a denial of service (buffer overfl

    CriticalCVSS 9.8No exploitEPSS 4%

    weechat · weechatFeb 12, 2020

  • An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected).

    CriticalCVSS 9.8No exploitEPSS 2%

    weechat · weechatMar 23, 2020

  • WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more than two billion items

    CriticalCVSS 9.8No exploitEPSS 0%

    weechat · weechatNov 10, 2024

  • CVE-2017-8073
    31Monitor

    WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin.

    HighCVSS 7.5No exploitEPSS 3%

    weechat · weechatApr 23, 2017

  • logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized.

    HighCVSS 7.5No exploitEPSS 3%

    weechat · loggerSep 23, 2017

  • WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that trigger an out-of-bound

    HighCVSS 7.5No exploitEPSS 2%

    weechat · weechatSep 5, 2021

  • WeeChat (aka Wee Enhanced Environment for Chat) 3.2 to 3.4 before 3.4.1 does not properly verify the TLS certificate of the server, after ce

    MediumCVSS 4.8No exploitEPSS 0%

    weechat · weechatApr 2, 2022