
EOSIO/eos
Releases158
Frequency1 week 2 days
Last Release
Stars11.2K
An open source smart contract platform
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 7.5 HIGH | 5 MEDIUM | ||
EOS v2.1.0 was discovered to contain a heap-buffer-overflow via the function txn_test_gen_plugin. | |||
| — | 6.8 MEDIUM | ||
EOS.IO jit-wasm 4.1 has a heap-based buffer overflow via a crafted wast file. | |||
| — | 7.5 HIGH | ||
EOSIO/eos eos version after commit f1545dd0ae2b77580c2236fdb70ae7138d2c7168 contains a stack overflow vulnerability in abi_serializer that can result in attack eos network node. This attack appear to be exploitable via network request. This vulnerability appears to have been fixed in after commit cf7209e703e6d3f7a5413e0cb1fe88a4d8e4b38d . | |||
| — | 5 MEDIUM | ||
An issue was discovered in EOS.IO DAWN 4.2. plugins/net_plugin/net_plugin.cpp does not limit the number of P2P connections from the same source IP address. | |||