Known Vulnerabilities for products from Moddable

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Moddable".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-29368 json Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the funct... 7.1 - HIGH 2022-05-12 2023-01-24
CVE-2021-46335 json Moddable SDK v11.5.0 was discovered to contain a NULL pointer dereference in the component fx_Function_prototype_hasInstance. 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46334 json Moddable SDK v11.5.0 was discovered to contain a stack buffer overflow via the component __interceptor_strcat. 7.8 - HIGH 2022-01-20 2022-01-26
CVE-2021-46333 json Moddable SDK v11.5.0 was discovered to contain an invalid memory access vulnerability via the component __asan_memmove. 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46332 json Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via xs/sources/xsDataView.c in fxUint8Getter. 7.8 - HIGH 2022-01-20 2022-01-26
CVE-2021-46331 json Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsProxy.c in fxProxyGetPrototype. 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46330 json Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsDataView.c in fx_ArrayBuffer_prototype_c... 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46329 json Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via the component _fini. 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46328 json Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via the component __libc_start_main. 7.8 - HIGH 2022-01-20 2022-01-26
CVE-2021-46327 json Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsArray.c in fx_Array_prototype_sort. 5.5 - MEDIUM 2022-01-20 2022-01-26
CVE-2021-46326 json Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via the component __asan_memcpy. 7.8 - HIGH 2022-01-20 2022-01-26
CVE-2021-29329 json OpenSource Moddable v10.5.0 was discovered to contain a stack overflow in the fxBinaryExpressionNodeDistribute function at /m... 7.8 - HIGH 2021-11-19 2022-05-03
CVE-2021-29328 json OpenSource Moddable v10.5.0 was discovered to contain buffer over-read in the fxDebugThrow function at /moddable/xs/sources/x... 7.1 - HIGH 2021-11-19 2021-11-23
CVE-2021-29327 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_ArrayBuffer function at /moddable/xs/s... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29326 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fxIDToString function at /moddable/xs/sou... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29325 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow in the fx_String_prototype_repeat function at /m... 7.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-29324 json OpenSource Moddable v10.5.0 was discovered to contain a stack overflow via the component /moddable/xs/sources/xsScript.c. 7.8 - HIGH 2021-11-19 2022-05-03
CVE-2021-29323 json OpenSource Moddable v10.5.0 was discovered to contain a heap buffer overflow via the component /modules/network/wifi/esp/modw... 5.5 - MEDIUM 2021-11-19 2021-11-23
CVE-2020-25465 json Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK before O... 7.5 - HIGH 2020-12-04 2020-12-04
CVE-2020-25464 json Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is only par... 7.5 - HIGH 2020-12-04 2020-12-04

Known software with vulnerabilities from Moddable

Type Vendor Product Version
ApplicationModdableModdableos180328

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report