Vulnerabilities (CVE)

Filtered by vendor Eclipse Subscribe
Filtered by product Cyclonedds
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38443 1 Eclipse 1 Cyclonedds 2023-12-10 7.5 HIGH 9.8 CRITICAL
Eclipse CycloneDDS versions prior to 0.8.0 improperly handle invalid structures, which may allow an attacker to write arbitrary values in the XML parser.
CVE-2021-38441 1 Eclipse 1 Cyclonedds 2023-12-10 7.5 HIGH 9.8 CRITICAL
Eclipse CycloneDDS versions prior to 0.8.0 are vulnerable to a write-what-where condition, which may allow an attacker to write arbitrary values in the XML parser.