Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2619▼ 461 respecto a la semana anterior
Críticas / altas1277▼ 72 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)235▼ 274 respecto a la semana anterior
12 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.1) | 0.19% | — | Webassembly WabtAIRlboxAIWasmbind Wasm BoxcAIMozilla FirefoxAI | 12/9/2026 | 22/9/2026 | wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does not check the return value of calloc() in wasm_rt_allocate_funcref_table() (wasm2c/wasm-rt-impl-tableops.inc). When the funcref table allocation fails,… | |
| Modificada | Baja (1.9) | 0.21% | — | Webassembly Wabt | 1/1/2026 | 1/10/2026 | A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such manipulation leads to out-of-bounds read. Local access is required to approach this attack. The… | |
| Modificada | Baja (1.9) | 0.21% | — | Webassembly Wabt | 1/1/2026 | 1/10/2026 | A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. This manipulation causes memory corruption. It is possible to launch the attack on the local host. The exploit… | |
| Analizada | Baja (1.9) | 0.24% | — | Webassembly Wabt | 19/6/2025 | 17/6/2026 | A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been declared as problematic. Affected by this vulnerability is the function GetFuncOffset of the file src/interp/binary-reader-interp.cc. The manipulation leads to use after free. It is possible to launch the attack on the local host. The exploit has… | |
| Analizada | Baja (1.9) | 0.23% | — | Webassembly Wabt | 19/6/2025 | 17/6/2026 | A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been classified as problematic. Affected is the function OnDataCount of the file src/interp/binary-reader-interp.cc. The manipulation leads to resource consumption. Attacking locally is a requirement. The exploit has been disclosed to the public and… | |
| Analizada | Baja (1.9) | 0.23% | — | Webassembly Wabt | 19/6/2025 | 17/6/2026 | A vulnerability was found in WebAssembly wabt up to 1.0.37 and classified as problematic. This issue affects the function LogOpcode of the file src/binary-reader-objdump.cc. The manipulation leads to reachable assertion. Local access is required to approach this attack. The exploit has been disclosed to the public and… | |
| Analizada | Baja (2.3) | 0.50% | — | Webassembly Wabt | 21/3/2025 | 17/6/2026 | A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This vulnerability affects the function BinaryReaderInterp::GetReturnCallDropKeepCount of the file wabt/src/interp/binary-reader-interp.cc. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely.… | |
| Analizada | Media (5.3) | 0.57% | — | Webassembly Wabt | 17/3/2025 | 17/6/2026 | A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace)::BinaryReaderInterp::OnExport of the file wabt/src/interp/binary-reader-interp.cc of the component Malformed File Handler. The manipulation leads to heap-based buffer… | |
| Modificada | Media (5.5) | 0.28% | — | Webassembly Wabt | 10/3/2023 | 17/6/2026 | WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild. | |
| Modificada | Media (5.5) | 0.27% | — | Webassembly Wabt | 28/10/2022 | 17/6/2026 | wasm2c v1.0.29 was discovered to contain an abort in CWriter::Write. | |
| Modificada | Alta (7.1) | 0.31% | — | Webassembly Wabt | 28/10/2022 | 17/6/2026 | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount. | |
| Modificada | Alta (7.1) | 0.31% | — | Webassembly Wabt | 28/10/2022 | 17/6/2026 | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallExpr->GetReturnCallDropKeepCount. |