Vulnerabilities > Moddable > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-01-20 CVE-2021-46327 Unspecified vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsArray.c in fx_Array_prototype_sort.
local
low complexity
moddable
5.5
2022-01-20 CVE-2021-46329 Unspecified vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via the component _fini.
local
low complexity
moddable
5.5
2022-01-20 CVE-2021-46330 Unspecified vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsDataView.c in fx_ArrayBuffer_prototype_concat.
local
low complexity
moddable
5.5
2022-01-20 CVE-2021-46331 Unspecified vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsProxy.c in fxProxyGetPrototype.
local
low complexity
moddable
5.5
2022-01-20 CVE-2021-46333 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain an invalid memory access vulnerability via the component __asan_memmove.
local
low complexity
moddable CWE-119
5.5
2022-01-20 CVE-2021-46335 NULL Pointer Dereference vulnerability in Moddable SDK 11.5.0
Moddable SDK v11.5.0 was discovered to contain a NULL pointer dereference in the component fx_Function_prototype_hasInstance.
local
low complexity
moddable CWE-476
5.5
2021-11-19 CVE-2021-29323 Out-of-bounds Write vulnerability in Moddable 10.5.0
OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow via the component /modules/network/wifi/esp/modwifi.c.
local
low complexity
moddable CWE-787
5.5