Vulnerabilities > Mystenlabs

DATE CVE VULNERABILITY TITLE RISK
2024-02-13 CVE-2023-42374 Code Injection vulnerability in Mystenlabs SUI 1.2.1
An issue in mystenlabs Sui Blockchain before v.1.6.3 allow a remote attacker to execute arbitrary code and cause a denial of service via a crafted compressed script to the Sui node component.
network
low complexity
mystenlabs CWE-94
critical
9.8
2023-09-08 CVE-2023-36184 Out-of-bounds Write vulnerability in multiple products
CMysten Labs Sui blockchain v1.2.0 was discovered to contain a stack overflow via the component /spec/openrpc.json.
7.5