VYPR

Webassembly Binary Toolkit

by Webassembly

CVEs (5)

  • CVE-2023-31670HigMay 23, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (DoS) via running a crafted binary.

  • CVE-2023-46331MedOct 23, 2023
    risk 0.36cvss 5.5epss 0.00

    WebAssembly wabt 1.0.33 has an Out-of-Bound Memory Read in in DataSegment::IsValidRange(), which lead to segmentation fault.

  • CVE-2023-46332MedOct 23, 2023
    risk 0.36cvss 5.5epss 0.00

    WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

  • CVE-2023-31669MedMay 23, 2023
    risk 0.36cvss 5.5epss 0.00

    WebAssembly wat2wasm v1.0.32 allows attackers to cause a libc++abi.dylib crash by putting '@' before a quote (").

  • CVE-2025-3122LowApr 2, 2025
    risk 0.20cvss 3.1epss 0.01

    A vulnerability classified as problematic was found in WebAssembly wabt 1.0.36. Affected by this vulnerability is the function BinaryReaderInterp::BeginFunctionBody of the file src/interp/binary-reader-interp.cc. The manipulation leads to null pointer dereference. The attack can…