Webassembly
Webassembly Wabt: vulnerabilidades y CVE
Webassembly Wabt tiene 12 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-90648 | Alta (7.1) | 0.19% | — | 12 sept 2026 | wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does not check the return value of calloc() in… |
| CVE-2025-15412 | Baja (1.9) | 0.21% | — | 1 ene 2026 | A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such… |
| CVE-2025-15411 | Baja (1.9) | 0.21% | — | 1 ene 2026 | A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. This… |
| CVE-2025-6275 | Baja (1.9) | 0.24% | — | 19 jun 2025 | A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been declared as problematic. Affected by this vulnerability is the function GetFuncOffset of the file src/interp/binary-reader-interp.cc. The… |
| CVE-2025-6274 | Baja (1.9) | 0.23% | — | 19 jun 2025 | A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been classified as problematic. Affected is the function OnDataCount of the file src/interp/binary-reader-interp.cc. The manipulation leads to resource… |
| CVE-2025-6273 | Baja (1.9) | 0.23% | — | 19 jun 2025 | A vulnerability was found in WebAssembly wabt up to 1.0.37 and classified as problematic. This issue affects the function LogOpcode of the file src/binary-reader-objdump.cc. The manipulation leads to reachable… |
| CVE-2025-2584 | Baja (2.3) | 0.50% | — | 21 mar 2025 | A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This vulnerability affects the function BinaryReaderInterp::GetReturnCallDropKeepCount of the file… |
| CVE-2025-2368 | Media (5.3) | 0.57% | — | 17 mar 2025 | A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace)::BinaryReaderInterp::OnExport of the file… |
| CVE-2023-27119 | Media (5.5) | 0.28% | — | 10 mar 2023 | WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild. |
| CVE-2022-43283 | Media (5.5) | 0.27% | — | 28 oct 2022 | wasm2c v1.0.29 was discovered to contain an abort in CWriter::Write. |
| CVE-2022-43282 | Alta (7.1) | 0.31% | — | 28 oct 2022 | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount. |
| CVE-2022-43280 | Alta (7.1) | 0.31% | — | 28 oct 2022 | wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallExpr->GetReturnCallDropKeepCount. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.