pmmp/PocketMine-MP

pmmp/PocketMine-MP

Releases472
Frequency1 week 3 days
Last Release
Stars3.53K
Custom server software for Minecraft: Bedrock, built from scratch in PHP, C and C++

CVE History

CVEPublishedCVSS v3CVSS v2

PocketMine-MP versions prior to 4.18.1 contain an improper input validation vulnerability in inventory transaction handling. A remote attacker with a valid player session can request that the server drop more items than are available in the player's hotbar, triggering a server crash and resulting in denial of service.