VendorsBytecode Alliancewasmtimeall versions
Vulnerabilities

Bytecode Alliance wasmtime

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

41CVEs
CVE-2024-51745
Wasmtime doesn't fully sandbox all the Windows device filenames
Published 2024-11-05 · Analyzed
10.0EPSS 0.008
CVE-2023-26489
Guest-controlled out-of-bounds read/write on x86_64 in wasmtime
Published 2023-03-08 · Modified
9.9EPSS 0.013
CVE-2026-34987
Wasmtime with Winch compiler backend on aarch64 may allow a sandbox-escaping memory access
Published 2026-04-09 · Analyzed
9.9EPSS 0.003
CVE-2022-24791
Use after free in Wasmtime
Published 2022-03-31 · Modified
9.8EPSS 0.012
CVE-2022-39394
wasmtime_trap_code C API function has out of bounds write vulnerability
Published 2022-11-10 · Modified
9.8EPSS 0.003
CVE-2026-34971
Wasmtime miscompiled guest heap access enables sandbox escape on aarch64 Cranelift
Published 2026-04-09 · Modified
9.0EPSS 0.003
CVE-2022-31146
Use After Free in Wasmtime
Published 2022-07-20 · Modified
8.8EPSS 0.012
CVE-2023-30624
Wasmtime has Undefined Behavior in Rust runtime functions
Published 2023-04-27 · Modified
8.8EPSS 0.005
CVE-2022-39393
Wasmtime vulnerable to data leakage between instances in the pooling allocator
Published 2022-11-10 · Modified
8.6EPSS 0.007
CVE-2022-23636
Invalid drop of partially-initialized instances in wasmtime
Published 2022-02-16 · Modified
8.1EPSS 0.008
CVE-2026-34941
Wasmtime has a Heap OOB read in component model UTF-16 to latin1+utf16 string transcoding
Published 2026-04-09 · Analyzed
8.1EPSS 0.004
CVE-2022-31169
Cranelift vulnerable to miscompilation of constant values in division on AArch64
Published 2022-07-21 · Modified
7.5EPSS 0.009
CVE-2026-27572
Wasmtime can panic when adding excessive fields to a `wasi:http/types.fields` instance
Published 2026-02-24 · Analyzed
7.5EPSS 0.005
CVE-2026-27195
Wasmtime is vulnerable to panic when dropping a `[Typed]Func::call_async` future
Published 2026-02-24 · Analyzed
7.5EPSS 0.004
CVE-2026-34946
Wasmtime's host panics when Winch compiler executes `table.fill`
Published 2026-04-09 · Analyzed
7.5EPSS 0.004
CVE-2026-47261
Wasmtime: WASI path_open(TRUNCATE) bypasses `FilePerms::WRITE` host restriction
Published 2026-06-15 · Analyzed
7.5EPSS 0.004
CVE-2026-34943
Wasmtime panics when lifting `flags` component value
Published 2026-04-09 · Analyzed
7.5EPSS 0.003
CVE-2026-44216
Wasmtime: Panic when allocating a table exceeding the size of the host's address space
Published 2026-05-14 · Modified
7.5EPSS 0.003
CVE-2026-35186
Wasmtime has an improperly masked return value from `table.grow` with Winch compiler backend
Published 2026-04-09 · Analyzed
7.5EPSS 0.002
CVE-2022-39392
Wasmtime vulnerable to out of bounds read/write with zero-memory-pages configuration
Published 2022-11-10 · Modified
7.4EPSS 0.006
CVE-2026-27204
Wasmtime WASI implementations are vulnerable to guest-controlled resource exhaustion
Published 2026-02-24 · Analyzed
6.9EPSS 0.004
CVE-2022-31104
Miscompilation of `i8x16.swizzle` and `select` with v128 inputs in Wasmtime
Published 2022-06-27 · Modified
6.8EPSS 0.018
CVE-2026-34942
Wasmtime panics when transcoding misaligned utf-16 strings
Published 2026-04-09 · Analyzed
6.5EPSS 0.004
CVE-2026-34945
Wasmtime leaks host data with 64-bit tables and Winch
Published 2026-04-09 · Analyzed
6.5EPSS 0.003
CVE-2021-39219
Wrong type for `Linker`-define functions when used across two `Engine`s
Published 2021-09-17 · Modified
6.3EPSS 0.004
CVE-2021-39216
Use after free passing `externref`s to Wasm in Wasmtime
Published 2021-09-17 · Modified
6.3EPSS 0.003
CVE-2021-39218
Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime
Published 2021-09-17 · Modified
6.3EPSS 0.003
CVE-2026-34988
Wasmtime leaks data between pooling allocator instances
Published 2026-04-09 · Analyzed
6.3EPSS 0.003
CVE-2026-35195
Wasmtime has an out-of-bounds write or crash when transcoding component model strings
Published 2026-04-09 · Analyzed
6.1EPSS 0.002
CVE-2026-34944
Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64
Published 2026-04-09 · Analyzed
5.7EPSS 0.002
CVE-2024-30266
Wasmtime vulnerable to panic when using a dropped extenref-typed element segment
Published 2024-04-04 · Analyzed
5.5EPSS 0.003
CVE-2024-47763
Wasmtime runtime crash when combining tail calls with trapping imports
Published 2024-10-09 · Analyzed
5.5EPSS 0.002
CVE-2026-24116
Wasmtime segfault or unused out-of-sandbox load with f64.copysign operator on x86-64
Published 2026-01-27 · Analyzed
5.5EPSS 0.002
CVE-2023-41880
Miscompilation of wasm `i64x2.shr_s` instruction with constant input on x86_64
Published 2023-09-15 · Modified
5.3EPSS 0.007
CVE-2026-54786
Wasmtime: Leak in WASIp1 `fd_renumber` implementation
Published 2026-07-01 · Analyzed
5.0EPSS 0.002
CVE-2026-34983
Wasmtime has a use-after-free bug after cloning `wasmtime::Linker`
Published 2026-04-09 · Analyzed
5.0EPSS 0.001
CVE-2023-27477
wasmtime is a fast and secure runtime for WebAssembly. Wasmtime's code generation backend, Cranelift, has a bug on x86_64 platforms for the WebAssembly `i8x16.select` instruction which will produce the wrong results when the same operand is provided to the instruction and some of the selected indices are greater than 16. There is an off-by-one error in the calculation of the mask to the `pshufb` instruction which causes incorrect results to be returned if lanes are selected from the second vector. This codegen bug has been fixed in Wasmtiem 6.0.1, 5.0.1, and 4.0.1. Users are recommended to upgrade to these updated versions. If upgrading is not an option for you at this time, you can avoid this miscompilation by disabling the Wasm simd proposal. Additionally the bug is only present on x86_64 hosts. Other platforms such as AArch64 and s390x are not affected.
Published 2023-03-08 · Modified
4.3EPSS 0.006
CVE-2025-53901
Wasmtime has host panic with `fd_renumber` WASIp1 function
Published 2025-07-18 · Analyzed
3.5EPSS 0.003
CVE-2025-61670
Wasmtime has memory leak in C API with `externref` and `anyref` types
Published 2025-10-07 · Analyzed
3.3EPSS 0.002
CVE-2025-62711
Wasmtime vulnerable to segfault when using component resources
Published 2025-10-24 · Analyzed
3.1EPSS 0.004
1 / 2Next →