Known Vulnerabilities for Contracts-upgradeable by Openzeppelin
Listed below are 5 of the newest known vulnerabilities associated with "Contracts-upgradeable" by "Openzeppelin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-39384 json | OpenZeppelin Contracts is a library for secure smart contract development. Before version 4.4.1 but after 3.2.0, initializer ... | 5.6 - MEDIUM | 2022-11-04 | 2022-12-06 |
| CVE-2022-35961 json | OpenZeppelin Contracts is a library for secure smart contract development. The functions `ECDSA.recover` and `ECDSA.tryRecove... | 6.5 - MEDIUM | 2022-08-15 | 2022-12-06 |
| CVE-2022-35916 json | OpenZeppelin Contracts is a library for secure smart contract development. Contracts using the cross chain utilities for Arbi... | 5.3 - MEDIUM | 2022-08-01 | 2022-12-06 |
| CVE-2022-35915 json | OpenZeppelin Contracts is a library for secure smart contract development. The target contract of an EIP-165 `supportsInterfa... | 5.3 - MEDIUM | 2022-08-01 | 2023-07-21 |
| CVE-2022-31198 json | OpenZeppelin Contracts is a library for secure smart contract development. This issue concerns instances of Governor that use... | 7.5 - HIGH | 2022-08-01 | 2022-12-06 |