Vulnerabilities > Openzeppelin > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-01 CVE-2022-35916 Incorrect Resource Transfer Between Spheres vulnerability in Openzeppelin Contracts and Contracts Upgradeable
OpenZeppelin Contracts is a library for secure smart contract development.
network
low complexity
openzeppelin CWE-669
5.3
2022-02-04 CVE-2021-46320 Improper Initialization vulnerability in Openzeppelin
In OpenZeppelin <=v4.4.0, initializer functions that are invoked separate from contract creation (the most prominent example being minimal proxies) may be reentered if they make an untrusted non-view external call.
network
low complexity
openzeppelin CWE-665
5.0