VYPR
Vendor

Msgpack

Products
6
CVEs
7
Across products
10
Status
Private

Products

6

Recent CVEs

7
  • CVE-2026-32284HigMar 26, 2026
    risk 0.49cvss 7.5epss 0.01

    The msgpack decoder fails to properly validate the input buffer length when processing truncated fixext data (format codes 0xd4-0xd8). This can lead to an out-of-bounds read and a runtime panic, allowing a denial of service attack.

  • CVE-2026-57585HigJun 30, 2026
    risk 0.42cvss 7.5epss 0.00

    MessagePack is the serializer implementation for Python msgpack.org. Prior to 1.2.1, there is an Out-of-bounds read/crash on Unpacker reuse after a caught error, potentially leading to a DoS attack. If the Unpacker is used repeatedly after an error occurs, the process may crash…

  • CVE-2026-21452HigJan 2, 2026
    risk 0.42cvss 7.5epss 0.01

    MessagePack for Java is a serializer implementation for Java. A denial-of-service vulnerability exists in versions prior to 0.9.11 when deserializing .msgpack files containing EXT32 objects with attacker-controlled payload lengths. While MessagePack-Java parses extension headers…

  • CVE-2026-72854MedAug 20, 2026
    risk 0.34cvss 5.3epss 0.00

    msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_buffer API, computes its new buffer size using an unchecked size_t addition of the requested size and the amount already used. The doubling loop guards its own multiplication…

  • CVE-2026-54522MedJul 30, 2026
    risk 0.28cvss 5.4epss 0.00

    MessagePack for Ruby is an implementation of the MessagePack binary serialization format. Prior to 1.8.2, MessagePack::Buffer#clear in ext/msgpack/buffer.c leaves rmem_last, rmem_end, and rmem_owner stale after _msgpack_buffer_shift_chunk returns an rmem page to the shared pool,…

  • CVE-2026-90473MedSep 12, 2026
    risk 0.27cvss 5.3epss 0.00

    msgpack-java through 0.9.12 contains an integer overflow vulnerability in MessageUnpacker.skipValue() when processing MAP32 containers with large element counts. Attackers can supply a MAP32 element count at or above 0x40000000 that wraps when doubled, causing the parser cursor…

  • CVE-2026-90472MedSep 12, 2026
    risk 0.27cvss 5.3epss 0.01

    msgpack-java through 0.9.12 contains a stack overflow vulnerability in MessageUnpacker.unpackValue() that recursively deserializes arrays and maps without nesting depth limits. Attackers can craft payloads with deeply nested arrays to exhaust the deserializing thread's stack and…