VendorsCreolabsgravityany version
Vulnerabilities

Creolabs Gravity any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2021-32281
An issue was discovered in gravity through 0.8.1. A heap-buffer-overflow exists in the function gnode_function_add_upvalue located in gravity_ast.c. It allows an attacker to cause code Execution.
Published 2021-09-20 · Modified
7.8EPSS 0.011
CVE-2021-32284
An issue was discovered in gravity through 0.8.1. A NULL pointer dereference exists in the function ircode_register_pop_context_protect() located in gravity_ircode.c. It allows an attacker to cause Denial of Service.
Published 2021-09-20 · Modified
7.8EPSS 0.008
CVE-2018-13795
Gravity before 0.5.1 does not support a maximum recursion depth.
Published 2018-07-09 · Modified
7.5EPSS 0.015
CVE-2021-32282
An issue was discovered in gravity through 0.8.1. A NULL pointer dereference exists in the function ircode_add_check() located in gravity_ircode.c. It allows an attacker to cause Denial of Service.
Published 2021-09-20 · Modified
5.5EPSS 0.006
CVE-2021-32283
An issue was discovered in gravity through 0.8.1. A NULL pointer dereference exists in the function gravity_string_to_value() located in gravity_value.c. It allows an attacker to cause Denial of Service.
Published 2021-09-20 · Modified
5.5EPSS 0.006
CVE-2021-32285
An issue was discovered in gravity through 0.8.1. A NULL pointer dereference exists in the function list_iterator_next() located in gravity_core.c. It allows an attacker to cause Denial of Service.
Published 2021-09-20 · Modified
5.5EPSS 0.006