Vulnerabilities > Dfinity

DATE CVE VULNERABILITY TITLE RISK
2024-09-05 CVE-2024-7884 Memory Leak vulnerability in Dfinity Canister Developer KIT for the Internet Computer
When a canister method is called via ic_cdk::call* , a new Future CallFuture is created and can be awaited by the caller to get the execution result.
network
low complexity
dfinity CWE-401
7.5
2023-12-08 CVE-2023-6245 Infinite Loop vulnerability in Dfinity Candid
The Candid library causes a Denial of Service while parsing a specially crafted payload with 'empty' data type.
network
low complexity
dfinity CWE-835
7.5