ZeroHour

Vulnerabilities

54 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-8257
A vulnerability was detected in WebAssembly Binaryen up to 117.

A vulnerability was detected in WebAssembly Binaryen up to 117. This issue affects the function IRBuilder::makeBrOn of the file src/wasm/wasm-ir-builder.cpp of the component BrOn Parser. Performing a manipulation results in reachable assertion. The attack needs to be approached locally. The exploit is now public and may be used. The patch is named 1251efbc1ea471c1311d2726b2bbe061ff2a291c. It is suggested to install a patch to address this issue.

NVD description · AI analysis pending
1.9<1% PoC ×2
  • webassembly binaryen
CVE-2025-15412
+1 in the same advisory: …15411
A security vulnerability has been detected in WebAssembly wabt up to 1.0.39.

A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed publicly and may be used. Unfortunately, the project has no active maintainer at the moment. In a reply to the issue report somebody recommended to the researcher to provide a PR himself.

NVD description · AI analysis pending
1.9<1% PoC ×2
  • webassembly wabt
CVE-2025-14956
+1 in the same advisory: …14957
A vulnerability was determined in WebAssembly Binaryen up to 125.

A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReader::readExport of the file src/wasm/wasm-binary.cpp. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. Patch name: 4f52bff8c4075b5630422f902dd92a0af2c9f398. It is recommended to apply a patch to fix this issue.

NVD description · AI analysis pending
1.9<1% PoC ×2
  • webassembly binaryen
CVE-2025-6275
+2 in the same advisory: …6274 …6273
A vulnerability was found in WebAssembly wabt up to 1.0.37.

A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been declared as problematic. Affected by this vulnerability is the function GetFuncOffset of the file src/interp/binary-reader-interp.cc. The manipulation leads to use after free. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. A similar issue reported during the same timeframe was disputed by the code maintainer because it might not affect "real world wasm programs". Therefore, this entry might get disputed as well in the future.

NVD description · AI analysis pending
1.9<1% PoC ×2
  • webassembly wabt
CVE-2025-3122
A vulnerability classified as problematic was found in WebAssembly wabt 1.0.36.

A vulnerability classified as problematic was found in WebAssembly wabt 1.0.36. Affected by this vulnerability is the function BinaryReaderInterp::BeginFunctionBody of the file src/interp/binary-reader-interp.cc. The manipulation leads to null pointer dereference. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used.

NVD description · AI analysis pending
2.3<1% PoC ×2
  • webassembly webassembly binary toolkit
CVE-2025-2584
A vulnerability was found in WebAssembly wabt 1.0.36.

A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This vulnerability affects the function BinaryReaderInterp::GetReturnCallDropKeepCount of the file wabt/src/interp/binary-reader-interp.cc. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used.

NVD description · AI analysis pending
2.3<1% PoC ×2
  • webassembly wabt
CVE-2025-2368
A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical.

A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace)::BinaryReaderInterp::OnExport of the file wabt/src/interp/binary-reader-interp.cc of the component Malformed File Handler. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

NVD description · AI analysis pending
5.3<1% PoC ×2
  • webassembly wabt
CVE-2023-46332
+1 in the same advisory: …46331
WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

NVD description · AI analysis pending
5.5<1% PoC
  • webassembly webassembly binary toolkit
CVE-2020-18382
+1 in the same advisory: …18378
Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26.

Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-opt.

NVD description · AI analysis pending
6.5<1% PoC
  • webassembly binaryen
CVE-2023-31670
+1 in the same advisory: …31669
An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (DoS) via running a cr

An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (DoS) via running a crafted binary.

NVD description · AI analysis pending
7.5
group max
<1% PoC
  • webassembly webassembly binary toolkit
CVE-2023-27119
WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild.

WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild.

NVD description · AI analysis pending
5.5<1% PoC
  • webassembly wabt
CVE-2023-27117
+2 in the same advisory: …27115 …27116
WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.

WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.

NVD description · AI analysis pending
7.8
group max
<1% PoC
  • webassembly webassembly
CVE-2022-43282
+2 in the same advisory: …43280 …43283
wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.

wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.

NVD description · AI analysis pending
7.1
group max
<1% PoC
  • webassembly wabt
CVE-2022-43281
wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector >::size() at /bits/stl_vector.h.

wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector >::size() at /bits/stl_vector.h.

NVD description · AI analysis pending
7.8<1% PoC
  • webassembly wasm
CVE-2021-46054
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).

A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).

NVD description · AI analysis pending
5.5<1% PoC
  • webassembly binaryen
CVE-2021-45290
+1 in the same advisory: …45293
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.

A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.

NVD description · AI analysis pending
7.5
group max
1% PoC
  • webassembly binaryen
  • webassembly fedora
CVE-2019-15759
+1 in the same advisory: …15758
An issue was discovered in Binaryen 1.38.32.

An issue was discovered in Binaryen 1.38.32. Two visitors in ir/ExpressionManipulator.cpp can lead to a NULL pointer dereference in wasm::LocalSet::finalize in wasm/wasm.cpp. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by wasm2js.

NVD description · AI analysis pending
6.51% PoC
  • webassembly binaryen
CVE-2019-7703
+4 in the same advisory: …7704 …7701 …7700 …7702
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp.

In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote attackers could leverage this vulnerability to cause a denial-of-service via a wasm file, as demonstrated by wasm-merge.

NVD description · AI analysis pending
6.51% PoC
  • webassembly binaryen
CVE-2019-7662
An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22.

An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22. This allows remote attackers to cause a denial of service (failed assertion and crash) via a crafted wasm file.

NVD description · AI analysis pending
6.52% PoC
  • webassembly binaryen
CVE-2019-7153
+3 in the same advisory: …7151 …7152 …7154
A NULL pointer dereference was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::WasmBinaryBuilder::getFunct

A NULL pointer dereference was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::WasmBinaryBuilder::getFunctionIndexName) in Binaryen 1.38.22. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by wasm-opt.

NVD description · AI analysis pending
6.51% PoC
  • webassembly binaryen
CVE-2018-17293
+1 in the same advisory: …17292
An issue was discovered in WAVM before 2018-09-16.

An issue was discovered in WAVM before 2018-09-16. The run function in Programs/wavm/wavm.cpp does not check whether there is Emscripten memory to store the command-line arguments passed by the input WebAssembly file's main function, which allows attackers to cause a denial of service (application crash by NULL pointer dereference) or possibly have unspecified other impact by crafting certain WebAssembly files.

NVD description · AI analysis pending
8.8
group max
2% PoC
  • webassembly virtual machine project webassembly virtual machine
CVE-2018-16770
+2 in the same advisory: …16769 …16768
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecifie

In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because a certain new_allocator allocate call fails.

NVD description · AI analysis pending
8.81% PoC
  • webassembly virtual machine project webassembly virtual machine