← Back

Cosmwasm

cosmwasm

3 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Cosmwasm
cosmwasm
Cosmwasm Std
cosmwasm-std

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cosmwasm
1Serde Json Wasm
Aug 6, 2025
Jul 27, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data.
1Cosmwasm
1Cosmwasm Std
Aug 7, 2025
Jul 27, 2025
N/A· v4
5.3 MEDIUM· v3
N/A· v2
The cosmwasm-std crate before 2.0.2 for Rust allows integer overflows that cause incorrect contract calculations.
1Cosmwasm
1Cosmwasm
May 22, 2025
Mar 18, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue in CosmWasm prior to v2.2.0 allows attackers to bypass capability restrictions in blockchains by exploiting a lack of runtime capability validation. This allows attackers to deploy a contract without capability...Show more
An issue in CosmWasm prior to v2.2.0 allows attackers to bypass capability restrictions in blockchains by exploiting a lack of runtime capability validation. This allows attackers to deploy a contract without capability enforcement, and execute unauthorized actions on the blockchain.Show less