web3js CVE 脆弱性と CVE 一覧(2)

製品(CPE): — CVE 件数: 2

web3js 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to web3js, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 12 / 2 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2025-57329 web3-core-method is a package designed to creates the methods on the web3 modules. A Prototype Pollution vulnerability in the attachToObject function of web3-core-method version 1.10.4 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence. [email protected] 7.5 0.05% 2025-09-24 2025-10-20
CVE-2025-57330 The web3-core-subscriptions is a package designed to manages web3 subscriptions. A Prototype Pollution vulnerability in the attachToObject function of web3-core-subscriptions version 1.10.4 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence. [email protected] 7.5 0.05% 2025-09-24 2025-10-17
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence