Vulnerabilities > Bitcoin > Bitcoin > 0.13

DATE CVE VULNERABILITY TITLE RISK
2021-05-13 CVE-2021-31876 Incorrect Authorization vulnerability in Bitcoin
Bitcoin Core 0.12.0 through 0.21.1 does not properly implement the replacement policy specified in BIP125, which makes it easier for attackers to trigger a loss of funds, or a denial of service attack against downstream projects such as Lightning network nodes.
network
low complexity
bitcoin CWE-863
6.4
2021-02-04 CVE-2021-3401 Command Injection vulnerability in Bitcoin
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser.
network
low complexity
bitcoin CWE-77
7.5