Beveiligingsadvies

CVE-2026-3385

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-01 08:32:09
Laatst bijgewerkt 2026-03-02 19:34:14
Toegewezen door VulDB
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A vulnerability was detected in wren-lang wren up to 0.4.0. Affected is the function resolveLocal of the file src/vm/wren_compiler.c. The manipulation results in uncontrolled recursion. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.