High severity7.5NVD Advisory· Published Sep 6, 2026
CVE-2022-51009
CVE-2022-51009
Description
PocketMine-MP before 4.7.2 fails to properly handle exceptions from the adhocore/json-comment library when parsing skin geometry data. Attackers can send login or skin packets with invalid geometry JSON to trigger an unhandled RuntimeException, causing server crash.
Affected products
1- Range: <4.7.2
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.