Known Vulnerabilities for products from Parity
Listed below are 14 of the newest known vulnerabilities associated with the vendor "Parity".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-46130 json | Not Provided | 2026-05-28 | 2026-06-14 | |
| CVE-2026-31696 json | Not Provided | 2026-05-01 | 2026-06-01 | |
| CVE-2026-10674 json | Not Provided | 2026-07-21 | 2026-07-22 | |
| CVE-2025-68773 json | Not Provided | 2026-01-13 | 2026-07-14 | |
| CVE-2023-45130 json | Frontier is Substrate's Ethereum compatibility layer. Prior to commit aea528198b3b226e0d20cce878551fd4c0e3d5d0, at the end of... | 7.5 - HIGH | 2023-10-13 | 2023-10-24 |
| CVE-2023-34449 json | ink! is an embedded domain specific language to write smart contracts in Rust for blockchains built on the Substrate framewor... | 5.3 - MEDIUM | 2023-06-14 | 2023-06-28 |
| CVE-2023-28431 json | Frontier is an Ethereum compatibility layer for Substrate. Frontier's `modexp` precompile uses `num-bigint` crate under the h... | 7.5 - HIGH | 2023-03-22 | 2023-11-07 |
| CVE-2022-39242 json | Frontier is an Ethereum compatibility layer for Substrate. Prior to commit d3beddc6911a559a3ecc9b3f08e153dbe37a8658, the wors... | 5.3 - MEDIUM | 2022-09-24 | 2022-09-29 |
| CVE-2022-36008 json | Frontier is Substrate's Ethereum compatibility layer. A security issue was discovered affecting parsing of the RPC result of ... | 6.5 - MEDIUM | 2022-08-19 | 2022-08-25 |
| CVE-2022-31111 json | Frontier is Substrate's Ethereum compatibility layer. In affected versions the truncation done when converting between EVM ba... | 5.3 - MEDIUM | 2022-07-06 | 2022-07-14 |
| CVE-2022-21685 json | Frontier is Substrate's Ethereum compatibility layer. Prior to commit number `8a93fdc6c9f4eb1d2f2a11b7ff1d12d70bf5a664`, a bu... | 6.5 - MEDIUM | 2022-01-14 | 2022-01-21 |
| CVE-2021-41138 json | Frontier is Substrate's Ethereum compatibility layer. In the newly introduced signed Frontier-specific extrinsic for `pallet-... | 5.3 - MEDIUM | 2021-10-13 | 2021-10-20 |
| CVE-2021-39193 json | Frontier is Substrate's Ethereum compatibility layer. Prior to commit number 0b962f218f0cdd796dadfe26c3f09e68f7861b26, a bug ... | 5.3 - MEDIUM | 2021-09-03 | 2023-07-17 |
| CVE-2021-38195 json | An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust. It can verify an invalid signature because it allows... | 9.8 - CRITICAL | 2021-08-08 | 2021-08-16 |
| CVE-2019-25003 json | An issue was discovered in the libsecp256k1 crate before 0.3.1 for Rust. Scalar::check_overflow allows a timing side-channel ... | 7.5 - HIGH | 2020-12-31 | 2021-01-06 |
| CVE-2019-20399 json | A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows an at... | 5.9 - MEDIUM | 2020-01-23 | 2021-07-21 |
| CVE-2017-18016 json | Parity Browser 1.6.10 and earlier allows remote attackers to bypass the Same Origin Policy and obtain sensitive information b... | 5.3 - MEDIUM | 2018-01-11 | 2019-10-03 |
| CVE-2017-14460 json | An exploitable overly permissive cross-domain (CORS) whitelist vulnerability exists in JSON-RPC of Parity Ethereum client ver... | 7.5 - HIGH | 2018-01-19 | 2022-04-19 |
Known software with vulnerabilities from Parity
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Parity | Browser | 1.6.10 |
| Application | Parity | Ethereum Client | 1.7.8 |
| Application | Parity | Libsecp256k1 | - |