Releases158
Frequency1 week 2 days
Last Release
Stars11.2K
An open source smart contract platform

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

EOS v2.1.0 was discovered to contain a heap-buffer-overflow via the function txn_test_gen_plugin.

6.8 MEDIUM

EOS.IO jit-wasm 4.1 has a heap-based buffer overflow via a crafted wast file.

7.5 HIGH

EOSIO/eos eos version after commit f1545dd0ae2b77580c2236fdb70ae7138d2c7168 contains a stack overflow vulnerability in abi_serializer that can result in attack eos network node. This attack appear to be exploitable via network request. This vulnerability appears to have been fixed in after commit cf7209e703e6d3f7a5413e0cb1fe88a4d8e4b38d .

5 MEDIUM

An issue was discovered in EOS.IO DAWN 4.2. plugins/net_plugin/net_plugin.cpp does not limit the number of P2P connections from the same source IP address.