Vulnerabilities > Pocoproject > Poco > 1.11.7

DATE CVE VULNERABILITY TITLE RISK
2024-01-27 CVE-2023-52389 Integer Overflow or Wraparound vulnerability in Pocoproject Poco
UTF32Encoding.cpp in POCO has a Poco::UTF32Encoding integer overflow and resultant stack buffer overflow because Poco::UTF32Encoding::convert() and Poco::UTF32::queryConvert() may return a negative integer if a UTF-32 byte sequence evaluates to a value of 0x80000000 or higher.
network
low complexity
pocoproject CWE-190
critical
9.8