wasmtime vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the wasmtime package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Missing Release of Resource after Effective Lifetime

[37.0.0,37.0.2)
  • L
Time-of-check Time-of-use (TOCTOU) Race Condition

[19.0.0,21.0.2)[22.0.0,22.0.1)[23.0.0,23.0.3)[24.0.0,24.0.1)[25.0.0,25.0.2)
  • M
Reachable Assertion

[12.0.0,21.0.2)[21.0.0,21.0.2)[22.0.0,22.0.1)[23.0.0,23.0.3)[24.0.0,24.0.1)[25.0.0,25.0.2)
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

[19.0.0,19.0.1)
  • L
Arbitrary Code Execution

[10.0.0,10.0.2)[11.0.0,11.0.2)[12.0.0,12.0.2)
  • L
Reliance on Undefined, Unspecified, or Implementation-Defined Behavior

[,6.0.2)[7.0.0,7.0.1)[8.0.0,8.0.1)
  • C
Out-of-bounds Write

[0.37.0,4.0.1)[5.0.0,5.0.1)[6.0.0,6.0.1)
  • L
Off-by-one Error

[1.0.0,4.0.1)[5.0.0,5.0.1)[6.0.0,6.0.1)
  • M
Arbitrary Code Execution

[,0.85.2)
  • M
Use After Free

[0.37.0,0.38.2)
  • M
Incorrect Calculation

[,0.38.1)
  • H
Use After Free

[0.34.0,0.34.2)[0.35.0,0.35.2)
  • M
Access of Uninitialized Pointer

[,0.33.1)[0.34.0,0.34.1)
  • M
Use After Free

[0.19.0,0.30.0)
  • M
Out-of-Bounds

[0.26.0,0.30.0)
  • M
Type Confusion

[,0.30.0)