Known Vulnerabilities for Contracts by Openzeppelin
Listed below are 10 of the newest known vulnerabilities associated with "Contracts" by "Openzeppelin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-31565 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Lisandro Martinez WPSma... | Not Provided | 2025-04-11 | 2026-04-01 |
| CVE-2023-34459 json | OpenZeppelin Contracts is a library for smart contract development. Starting in version 4.7.0 and prior to version 4.9.2, whe... | 5.9 - MEDIUM | 2023-06-16 | 2023-06-26 |
| CVE-2023-34234 json | OpenZeppelin Contracts is a library for smart contract development. By frontrunning the creation of a proposal, an attacker ... | 5.3 - MEDIUM | 2023-06-07 | 2023-06-15 |
| CVE-2023-30542 json | OpenZeppelin Contracts is a library for secure smart contract development. The proposal creation entrypoint (`propose`) in `G... | 8.8 - HIGH | 2023-04-16 | 2023-04-27 |
| CVE-2023-30541 json | OpenZeppelin Contracts is a library for secure smart contract development. A function in the implementation contract may be i... | 5.3 - MEDIUM | 2023-04-17 | 2023-04-27 |
| CVE-2023-26488 json | OpenZeppelin Contracts is a library for secure smart contract development. The ERC721Consecutive contract designed for mintin... | 6.5 - MEDIUM | 2023-03-03 | 2023-03-10 |
| CVE-2023-23940 json | OpenZeppelin Contracts for Cairo is a library for secure smart contract development written in Cairo for StarkNet, a decentra... | 5.3 - MEDIUM | 2023-02-03 | 2023-11-07 |
| CVE-2022-39384 json | OpenZeppelin Contracts is a library for secure smart contract development. Before version 4.4.1 but after 3.2.0, initializer ... | 5.6 - MEDIUM | 2022-11-04 | 2022-12-06 |
| CVE-2022-35961 json | OpenZeppelin Contracts is a library for secure smart contract development. The functions `ECDSA.recover` and `ECDSA.tryRecove... | 6.5 - MEDIUM | 2022-08-15 | 2022-12-06 |
| CVE-2022-35916 json | OpenZeppelin Contracts is a library for secure smart contract development. Contracts using the cross chain utilities for Arbi... | 5.3 - MEDIUM | 2022-08-01 | 2022-12-06 |