cosmwasm CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

cosmwasm vulnerability overview

Aggregates CVE and security vulnerability intelligence across all cosmwasm-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk buffer overflow and vendor risk memory corruption and related problems; some flaws may lead to vendor impact application crash and vendor impact memory corruption.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-58264 The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data. [email protected] 3.2 0.10% 2025-07-27 2025-08-06
CVE-2024-58263 The cosmwasm-std crate before 2.0.2 for Rust allows integer overflows that cause incorrect contract calculations. [email protected] 3.7 0.24% 2025-07-27 2025-08-07
CVE-2025-25500 An issue in CosmWasm prior to v2.2.0 allows attackers to bypass capability restrictions in blockchains by exploiting a lack of runtime capability validation. This allows attackers to deploy a contract without capability enforcement, and execute unauthorized actions on the blockchain. [email protected] 7.5 0.92% 2025-03-18 2025-05-22
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence