Vulnerabilities > Erlang > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-09-21 CVE-2022-37026 Unspecified vulnerability in Erlang Erlang/Otp
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.
network
low complexity
erlang
critical
9.8
2020-09-02 CVE-2020-13802 OS Command Injection vulnerability in Erlang Rebar3
Rebar3 versions 3.0.0-beta.3 to 3.13.2 are vulnerable to OS command injection via URL parameter of dependency specification.
network
low complexity
erlang CWE-78
critical
9.8
2017-03-18 CVE-2016-10253 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Erlang Erlang/Otp
An issue was discovered in Erlang/OTP 18.x.
network
low complexity
erlang CWE-119
critical
9.8