Grin
Grin · 4 CVEs
CVE-2020-15899
HIGH
Grin 3.0.0 before 4.0.0 has insufficient validation of data related to Mimblewimble.
Jul 28, 2020
CVE-2020-12439
MEDIUM
Grin before 3.1.0 allows attackers to adversely affect availability of data on a Mimblewimble blockchain.
May 5, 2020
CVE-2020-6638
HIGH
Grin through 2.1.1 has Insufficient Validation.
Jan 21, 2020
CVE-2019-9195
CRITICAL
util/src/zip.rs in Grin before 1.0.2 mishandles suspicious files. An attacker can execute arbitrary code via directory…
Feb 26, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2020-15899 | Grin 3.0.0 before 4.0.0 has insufficient validation of data related to Mimblewimble. | HIGH | 0.75% | Jul 28, 2020 |
| CVE-2020-12439 | Grin before 3.1.0 allows attackers to adversely affect availability of data on a Mimblewimble blockchain. | MEDIUM | 1.55% | May 5, 2020 |
| CVE-2020-6638 | Grin through 2.1.1 has Insufficient Validation. | HIGH | 1.32% | Jan 21, 2020 |
| CVE-2019-9195 | util/src/zip.rs in Grin before 1.0.2 mishandles suspicious files. An attacker can execute arbitrary code via directory traversal in a ZIP archive. | CRITICAL | 3.59% | Feb 26, 2019 |
Showing 1 to 4 of 4 CVEs