Known Vulnerabilities for Moddable by Moddable

Listed below are 10 of the newest known vulnerabilities associated with "Moddable" by "Moddable".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-29368 json Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the funct... 7.1 - HIGH 2022-05-12 2023-01-24
CVE-2021-29329 json OpenSource Moddable v10.5.0 was discovered to contain a stack overflow in the fxBinaryExpressionNodeDistribute function at /m... 7.8 - HIGH 2021-11-19 2022-05-03
CVE-2021-29328 json OpenSource Moddable v10.5.0 was discovered to contain buffer over-read in the fxDebugThrow function at /moddable/xs/sources/x... 7.1 - HIGH 2021-11-19 2021-11-23
CVE-2021-29327 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_ArrayBuffer function at /moddable/xs/s... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29326 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fxIDToString function at /moddable/xs/sou... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29325 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_String_prototype_repeat function at /m... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29324 json OpenSource Moddable v10.5.0 was discovered to contain a stack overflow via the component /moddable/xs/sources/xsScript.c. 7.8 - HIGH 2021-11-19 2022-05-03
CVE-2021-29323 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow via the component /modules/network/wifi/esp/modw... 5.5 - MEDIUM 2021-11-19 2021-11-23
CVE-2020-25465 json Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK before O... 7.5 - HIGH 2020-12-04 2020-12-04
CVE-2020-25464 json Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is only par... 7.5 - HIGH 2020-12-04 2020-12-04

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationModdableModdableos202014
ApplicationModdableModdableos201127
ApplicationModdableModdableos201116
ApplicationModdableModdableos201030
ApplicationModdableModdableos201020
ApplicationModdableModdableos201012
ApplicationModdableModdableos201006
ApplicationModdableModdableos201005b
ApplicationModdableModdableos200930
ApplicationModdableModdableos200925
ApplicationModdableModdableos200915
ApplicationModdableModdableos200910
ApplicationModdableModdableos200908
ApplicationModdableModdableos200904
ApplicationModdableModdableos200903
ApplicationModdableModdableos200831
ApplicationModdableModdableos180329
ApplicationModdableModdableos180328

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report