Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
yaml-cpp project yaml-cpp vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2017-11692
The function "Token& Scanner::peek" in scanner.cpp in yaml-cpp 0.5.3 and previous versions allows remote malicious users to cause a denial of service (assertion failure and application exit) via a '!2' string.
Yaml-cpp Project Yaml-cpp
4.3
CVSSv2
CVE-2018-20573
The Scanner::EnsureTokensInQueue function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote malicious users to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
Yaml-cpp Project Yaml-cpp 0.6.2
4.3
CVSSv2
CVE-2018-20574
The SingleDocParser::HandleFlowMap function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote malicious users to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
Yaml-cpp Project Yaml-cpp 0.6.2
4.3
CVSSv2
CVE-2017-5950
The SingleDocParser::HandleNode function in yaml-cpp (aka LibYaml-C++) 0.5.3 allows remote malicious users to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
Yaml-cpp Project Yaml-cpp 0.5.3
4.3
CVSSv2
CVE-2019-6285
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote malicious users to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
Yaml-cpp Project Yaml-cpp 0.6.2
4.3
CVSSv2
CVE-2019-6292
An issue exists in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack Exhaustion occurs in YAML::SingleDocParser, and there is a stack consumption problem caused by recursive stack frames: HandleCompactMap, HandleMap, HandleFlowSequence, HandleSequence, HandleNode. Re...
Yaml-cpp Project Yaml-cpp 0.6.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started