← Back

Monero

monero

Vendor: Getmonero • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Getmonero
1Monero
Jun 17, 2026
Feb 15, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
Monero through 0.18.3.4 before ec74ff4 does not have response limits on HTTP server connections.
1Getmonero
1Monero
Jun 17, 2026
Oct 10, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
monero-wallet-gui in Monero GUI before 0.17.1.0 includes the . directory in an embedded RPATH (with a preference ahead of /usr/lib), which allows local users to gain privileges via a Trojan horse library in the current w...Show more
monero-wallet-gui in Monero GUI before 0.17.1.0 includes the . directory in an embedded RPATH (with a preference ahead of /usr/lib), which allows local users to gain privileges via a Trojan horse library in the current working directory.Show less
1Getmonero
1Monero
Nov 21, 2024
Sep 26, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as used in Monero 'Lithium Luna' (v0.12.2.0-master-ffab6700) and other cryptocurrencies. A specially craf...Show more
An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as used in Monero 'Lithium Luna' (v0.12.2.0-master-ffab6700) and other cryptocurrencies. A specially crafted network packet can cause a logic flaw, resulting in code execution. An attacker can send a packet to trigger this vulnerability.Show less