Wasmtime
Bytecodealliance · 45 CVEs
Wasmtime: Preemption and traps during bulk operations enable breaking internal VM state
Oct 2, 2026
Wasmtime: WASI hard links bypass wasmtime-wasi's FilePerms for destination
Jul 8, 2026
Wasmtime: Leak in WASIp1 `fd_renumber` implementation
Jul 1, 2026
Wasmtime: WASI path_open(TRUNCATE) bypasses `FilePerms::WRITE` host restriction
Jun 15, 2026
Wasmtime: Panic when allocating a table exceeding the size of the host's address space
May 14, 2026
Wasmtime has an out-of-bounds write or crash when transcoding component model strings
Apr 9, 2026
Wasmtime has an improperly masked return value from `table.grow` with Winch compiler backend
Apr 9, 2026
Wasmtime leaks data between pooling allocator instances
Apr 9, 2026
Wasmtime with Winch compiler backend on aarch64 may allow a sandbox-escaping memory access
Apr 9, 2026
Wasmtime has a use-after-free bug after cloning `wasmtime::Linker`
Apr 9, 2026
Wasmtime miscompiled guest heap access enables sandbox escape on aarch64 Cranelift
Apr 9, 2026
Wasmtime's host panics when Winch compiler executes `table.fill`
Apr 9, 2026
Wasmtime leaks host data with 64-bit tables and Winch
Apr 9, 2026
Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64
Apr 9, 2026
Wasmtime panics when lifting `flags` component value
Apr 9, 2026
Wasmtime panics when transcoding misaligned utf-16 strings
Apr 9, 2026
Wasmtime has a Heap OOB read in component model UTF-16 to latin1+utf16 string transcoding
Apr 9, 2026
Wasmtime can panic when adding excessive fields to a `wasi:http/types.fields` instance
Feb 24, 2026
Wasmtime WASI implementations are vulnerable to guest-controlled resource exhaustion
Feb 24, 2026
Wasmtime is vulnerable to panic when dropping a `[Typed]Func::call_async` future
Feb 24, 2026
Wasmtime segfault or unused out-of-sandbox load with f64.copysign operator on x86-64
Jan 27, 2026
Wasmtime provides unsound API access to a WebAssembly shared linear memory
Nov 12, 2025
Wasmtime vulnerable to segfault when using component resources
Oct 24, 2025
Wasmtime has memory leak in C API with `externref` and `anyref` types
Oct 7, 2025
Wasmtime has host panic with `fd_renumber` WASIp1 function
Jul 18, 2025
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-104855 | Wasmtime: Preemption and traps during bulk operations enable breaking internal VM state | LOW | 0.28% | Oct 2, 2026 |
| CVE-2026-58494 | Wasmtime: WASI hard links bypass wasmtime-wasi's FilePerms for destination | MEDIUM | 0.17% | Jul 8, 2026 |
| CVE-2026-54786 | Wasmtime: Leak in WASIp1 `fd_renumber` implementation | LOW | 0.37% | Jul 1, 2026 |
| CVE-2026-47261 | Wasmtime: WASI path_open(TRUNCATE) bypasses `FilePerms::WRITE` host restriction | HIGH | 0.50% | Jun 15, 2026 |
| CVE-2026-44216 | Wasmtime: Panic when allocating a table exceeding the size of the host's address space | MEDIUM | 0.58% | May 14, 2026 |
| CVE-2026-35195 | Wasmtime has an out-of-bounds write or crash when transcoding component model strings | MEDIUM | 0.26% | Apr 9, 2026 |
| CVE-2026-35186 | Wasmtime has an improperly masked return value from `table.grow` with Winch compiler backend | MEDIUM | 0.37% | Apr 9, 2026 |
| CVE-2026-34988 | Wasmtime leaks data between pooling allocator instances | LOW | 0.30% | Apr 9, 2026 |
| CVE-2026-34987 | Wasmtime with Winch compiler backend on aarch64 may allow a sandbox-escaping memory access | CRITICAL | 0.49% | Apr 9, 2026 |
| CVE-2026-34983 | Wasmtime has a use-after-free bug after cloning `wasmtime::Linker` | LOW | 0.12% | Apr 9, 2026 |
| CVE-2026-34971 | Wasmtime miscompiled guest heap access enables sandbox escape on aarch64 Cranelift | CRITICAL | 0.39% | Apr 9, 2026 |
| CVE-2026-34946 | Wasmtime's host panics when Winch compiler executes `table.fill` | MEDIUM | 0.42% | Apr 9, 2026 |
| CVE-2026-34945 | Wasmtime leaks host data with 64-bit tables and Winch | LOW | 0.38% | Apr 9, 2026 |
| CVE-2026-34944 | Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64 | MEDIUM | 0.26% | Apr 9, 2026 |
| CVE-2026-34943 | Wasmtime panics when lifting `flags` component value | MEDIUM | 0.39% | Apr 9, 2026 |
| CVE-2026-34942 | Wasmtime panics when transcoding misaligned utf-16 strings | MEDIUM | 0.42% | Apr 9, 2026 |
| CVE-2026-34941 | Wasmtime has a Heap OOB read in component model UTF-16 to latin1+utf16 string transcoding | MEDIUM | 0.46% | Apr 9, 2026 |
| CVE-2026-27572 | Wasmtime can panic when adding excessive fields to a `wasi:http/types.fields` instance | MEDIUM | 0.66% | Feb 24, 2026 |
| CVE-2026-27204 | Wasmtime WASI implementations are vulnerable to guest-controlled resource exhaustion | MEDIUM | 0.66% | Feb 24, 2026 |
| CVE-2026-27195 | Wasmtime is vulnerable to panic when dropping a `[Typed]Func::call_async` future | MEDIUM | 0.62% | Feb 24, 2026 |
| CVE-2026-24116 | Wasmtime segfault or unused out-of-sandbox load with f64.copysign operator on x86-64 | MEDIUM | 0.25% | Jan 27, 2026 |
| CVE-2025-64345 | Wasmtime provides unsound API access to a WebAssembly shared linear memory | LOW | 0.11% | Nov 12, 2025 |
| CVE-2025-62711 | Wasmtime vulnerable to segfault when using component resources | LOW | 0.43% | Oct 24, 2025 |
| CVE-2025-61670 | Wasmtime has memory leak in C API with `externref` and `anyref` types | LOW | 0.19% | Oct 7, 2025 |
| CVE-2025-53901 | Wasmtime has host panic with `fd_renumber` WASIp1 function | LOW | 0.33% | Jul 18, 2025 |
Showing 1 to 25 of 45 CVEs