Writeup Exploits

64,759 exploits tracked across all sources.

Sort: Activity Stars
CVE-2025-14196 WRITEUP HIGH
H3C Magic B1 <100R004 - Buffer Overflow
A weakness has been identified in H3C Magic B1 up to 100R004. The affected element is the function sub_44de0 of the file /goform/aspForm. This manipulation of the argument param causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS 8.8
CVE-2025-14208 WRITEUP MEDIUM
D-Link DIR-823X - Command Injection
A security flaw has been discovered in D-Link DIR-823X up to 20250416. This affects the function sub_415028 of the file /goform/set_wan_settings. The manipulation of the argument ppp_username results in command injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.
CVSS 6.3
CVE-2025-14284 WRITEUP MEDIUM
@tiptap/extension-link <2.10.4 - XSS
Versions of the package @tiptap/extension-link before 2.10.4 are vulnerable to Cross-site Scripting (XSS) due to unsanitized user input allowed in setting or toggling links. An attacker can execute arbitrary JavaScript code in the context of the application by injecting a javascript: URL payload into these attributes, which is then triggered either by user interaction.
CVSS 6.1
CVE-2025-14528 WRITEUP MEDIUM
D-Link DIR-803 <1.04 - Info Disclosure
A vulnerability was detected in D-Link DIR-803 up to 1.04. Impacted is an unknown function of the file /getcfg.php of the component Configuration Handler. The manipulation of the argument AUTHORIZED_GROUP results in information disclosure. The attack may be performed from remote. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
CVSS 5.3
CVE-2025-14874 WRITEUP HIGH
Nodemailer < 7.0.11 - Denial of Service via Crafted Email Address Header
A flaw was found in Nodemailer. This vulnerability allows a denial of service (DoS) via a crafted email address header that triggers infinite recursion in the address parser.
CVSS 7.5
CVE-2025-14957 WRITEUP LOW
WebAssembly Binaryen < 125 - Null Pointer Dereference in IRBuilder Local Access Functions
A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBuilder::makeLocalSet/IRBuilder::makeLocalTee of the file src/wasm/wasm-ir-builder.cpp of the component IRBuilder. Such manipulation of the argument Index leads to null pointer dereference. Local access is required to approach this attack. The exploit is publicly available and might be used. The name of the patch is 6fb2b917a79578ab44cf3b900a6da4c27251e0d4. Applying a patch is advised to resolve this issue.
CVSS 3.3
CVE-2025-14957 WRITEUP LOW
WebAssembly Binaryen < 125 - Null Pointer Dereference in IRBuilder Local Access Functions
A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBuilder::makeLocalSet/IRBuilder::makeLocalTee of the file src/wasm/wasm-ir-builder.cpp of the component IRBuilder. Such manipulation of the argument Index leads to null pointer dereference. Local access is required to approach this attack. The exploit is publicly available and might be used. The name of the patch is 6fb2b917a79578ab44cf3b900a6da4c27251e0d4. Applying a patch is advised to resolve this issue.
CVSS 3.3
CVE-2025-14957 WRITEUP LOW
WebAssembly Binaryen < 125 - Null Pointer Dereference in IRBuilder Local Access Functions
A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBuilder::makeLocalSet/IRBuilder::makeLocalTee of the file src/wasm/wasm-ir-builder.cpp of the component IRBuilder. Such manipulation of the argument Index leads to null pointer dereference. Local access is required to approach this attack. The exploit is publicly available and might be used. The name of the patch is 6fb2b917a79578ab44cf3b900a6da4c27251e0d4. Applying a patch is advised to resolve this issue.
CVSS 3.3
CVE-2025-14956 WRITEUP MEDIUM
WebAssembly Binaryen < 125 - Heap-Based Buffer Overflow in WasmBinaryReader::readExport
A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReader::readExport of the file src/wasm/wasm-binary.cpp. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. Patch name: 4f52bff8c4075b5630422f902dd92a0af2c9f398. It is recommended to apply a patch to fix this issue.
CVSS 5.3
CVE-2025-14956 WRITEUP MEDIUM
WebAssembly Binaryen < 125 - Heap-Based Buffer Overflow in WasmBinaryReader::readExport
A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReader::readExport of the file src/wasm/wasm-binary.cpp. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. Patch name: 4f52bff8c4075b5630422f902dd92a0af2c9f398. It is recommended to apply a patch to fix this issue.
CVSS 5.3
CVE-2025-14956 WRITEUP MEDIUM
WebAssembly Binaryen < 125 - Heap-Based Buffer Overflow in WasmBinaryReader::readExport
A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReader::readExport of the file src/wasm/wasm-binary.cpp. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. Patch name: 4f52bff8c4075b5630422f902dd92a0af2c9f398. It is recommended to apply a patch to fix this issue.
CVSS 5.3
CVE-2021-46055 WRITEUP MEDIUM
Binaryen 104 - Denial of Service via Assertion Abort in WasmBinaryBuilder
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).
CVSS 5.5
CVE-2021-46054 WRITEUP MEDIUM
Binaryen 104 - Denial of Service via Assertion Abort in WasmBinaryBuilder
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).
CVSS 5.5
CVE-2021-46053 WRITEUP MEDIUM
Binaryen 103 - Denial of Service
A Denial of Service vulnerability exists in Binaryen 103. The program terminates with signal SIGKILL.
CVSS 5.5
CVE-2021-46052 WRITEUP MEDIUM
Binaryen 104 - Denial of Service via Assertion Abort in wasm::Tuple::validate
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.
CVSS 5.5
CVE-2021-46050 WRITEUP MEDIUM
Binaryen 103 - Stack Overflow via printf_common Function
A Stack Overflow vulnerability exists in Binaryen 103 via the printf_common function.
CVSS 5.5
CVE-2021-46048 WRITEUP MEDIUM
Binaryen 104 - Denial of Service via Assertion Abort in WasmBinaryBuilder
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunctions.
CVSS 5.5
CVE-2021-45293 WRITEUP MEDIUM
Binaryen 103 - Denial of Service via Invalid Memory Address Dereference in wasm::WasmBinaryBuilder::visitLet
A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinaryBuilder::visitLet.
CVSS 5.5
CVE-2021-45290 WRITEUP HIGH
Binaryen 103 - Denial of Service via Assertion Abort in wasm::handle_unreachable
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.
CVSS 7.5
CVE-2020-18382 WRITEUP MEDIUM
Binaryen <1.38.26 - Memory Corruption
Heap-buffer-overflow in /src/wasm/wasm-binary.cpp in wasm::WasmBinaryBuilder::visitBlock(wasm::Block*) in Binaryen 1.38.26. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-opt.
CVSS 6.5
CVE-2020-18378 WRITEUP MEDIUM
Binaryen 1.38.26 - Denial of Service via NULL Pointer Dereference in SExpressionWasmBuilder
A NULL pointer dereference was discovered in SExpressionWasmBuilder::makeBlock in wasm/wasm-s-parser.c in Binaryen 1.38.26. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-as.
CVSS 6.5
CVE-2019-7704 WRITEUP MEDIUM
Binaryen 1.38.22 - Memory Corruption
wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demonstrated by wasm-merge and wasm-opt.
CVSS 6.5
CVE-2019-7703 WRITEUP MEDIUM
Binaryen < 64 - Use-After-Free in wasm::WasmBinaryBuilder::visitCall
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote attackers could leverage this vulnerability to cause a denial-of-service via a wasm file, as demonstrated by wasm-merge.
CVSS 6.5
CVE-2019-7702 WRITEUP MEDIUM
Binaryen < 64 - Denial of Service via Crafted WASM Input
A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-as.
CVSS 6.5
CVE-2019-7701 WRITEUP MEDIUM
Binaryen <1.38.22 - Buffer Overflow
A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm2js.
CVSS 6.5