CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-90648 HIGH

wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does…

CVSS 7.1 EPSS 0.19% Sep 12, 2026
CVE-2026-8257 MEDIUM

WebAssembly Binaryen BrOn wasm-ir-builder.cpp makeBrOn assertion

CVSS 4.8 EPSS 0.19% May 11, 2026
CVE-2025-15412 MEDIUM

WebAssembly wabt wasm-decompile VarName out-of-bounds

CVSS 4.8 EPSS 0.21% Jan 1, 2026
CVE-2025-15411 MEDIUM

WebAssembly wabt wasm-decompile InsertNode memory corruption

CVSS 4.8 EPSS 0.21% Jan 1, 2026
CVE-2025-14957 MEDIUM

WebAssembly Binaryen IRBuilder wasm-ir-builder.cpp makeLocalTee null pointer dereference

CVSS 4.8 EPSS 0.21% Dec 19, 2025
CVE-2025-14956 MEDIUM

WebAssembly Binaryen wasm-binary.cpp readExport heap-based overflow

CVSS 4.8 EPSS 0.21% Dec 19, 2025
CVE-2025-6275 MEDIUM

WebAssembly wabt binary-reader-interp.cc GetFuncOffset use after free

CVSS 4.8 EPSS 0.24% Jun 19, 2025
CVE-2025-6274 MEDIUM

WebAssembly wabt binary-reader-interp.cc OnDataCount resource consumption

CVSS 4.8 EPSS 0.23% Jun 19, 2025
CVE-2025-6273 MEDIUM

WebAssembly wabt binary-reader-objdump.cc LogOpcode assertion

CVSS 4.8 EPSS 0.23% Jun 19, 2025
CVE-2025-3122 LOW

WebAssembly wabt binary-reader-interp.cc BeginFunctionBody null pointer dereference

CVSS 2.3 EPSS 0.60% Apr 2, 2025
CVE-2025-2584 LOW

WebAssembly wabt binary-reader-interp.cc GetReturnCallDropKeepCount heap-based overflow

CVSS 2.3 EPSS 0.50% Mar 21, 2025
CVE-2025-2368 MEDIUM

WebAssembly wabt Malformed File binary-reader-interp.cc OnExport heap-based overflow

CVSS 5.3 EPSS 0.57% Mar 17, 2025
CVE-2023-46332 MEDIUM

WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

CVSS 5.5 EPSS 0.27% Oct 23, 2023
CVE-2023-46331 MEDIUM

WebAssembly wabt 1.0.33 has an Out-of-Bound Memory Read in in DataSegment::IsValidRange(), which lead to segmentation fault.

CVSS 5.5 EPSS 0.21% Oct 23, 2023
CVE-2020-18382 MEDIUM

Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26. A crafted wasm input can cause a se…

CVSS 6.5 EPSS 0.62% Aug 22, 2023
CVE-2020-18378 MEDIUM

A NULL pointer dereference was discovered in SExpressionWasmBuilder::makeBlock in wasm/wasm-s-parser.c in Binaryen 1.38.26. A crafted wasm input can cause a se…

CVSS 6.5 EPSS 0.61% Aug 22, 2023
CVE-2023-31670 HIGH

wasm2c: DoS via crafted binary

CVSS 7.5 EPSS 0.83% May 23, 2023
CVE-2023-31669 MEDIUM

WebAssembly wat2wasm v1.0.32 allows attackers to cause a libc++abi.dylib crash by putting '@' before a quote (").

CVSS 5.5 EPSS 0.28% May 23, 2023
CVE-2023-27119 MEDIUM

WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild.

CVSS 5.5 EPSS 0.28% Mar 10, 2023
CVE-2023-27117 HIGH

WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.

CVSS 7.8 EPSS 0.32% Mar 10, 2023
CVE-2023-27116 MEDIUM

WebAssembly v1.0.29 discovered to contain an abort in CWriter::MangleType.

CVSS 5.5 EPSS 0.29% Mar 10, 2023
CVE-2023-27115 MEDIUM

WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::cat_compute_size.

CVSS 5.5 EPSS 0.31% Mar 10, 2023
CVE-2022-43283 MEDIUM

wasm2c v1.0.29 was discovered to contain an abort in CWriter::Write.

CVSS 5.5 EPSS 0.27% Oct 28, 2022
CVE-2022-43282 HIGH

wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.

CVSS 7.1 EPSS 0.31% Oct 28, 2022
CVE-2022-43281 HIGH

wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector<wabt::Type, std::allocator<wabt::Type>>::size() at /bits/stl_vector…

CVSS 7.8 EPSS 0.33% Oct 28, 2022

Showing 1 to 25 CVEs · page 1 (more available)