Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

core-moos — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in core-moos, with AI-generated Chinese analysis, references, and POCs.

Vendor: themoos

CVE ID Title CVSS Severity Published
CVE-2026-85455 MOOS core-moos through 10.4.0 MOOSDB Out-of-Bounds Read via Short Packet CWE-125 8.2 High 2026-09-03
CVE-2026-85454 MOOS core-moos through 10.4.0 Off-by-One Buffer Overflow in Serial Telegram Handling CWE-193 6.1 Medium 2026-09-03
CVE-2026-85453 MOOS core-moos through 10.4.0 MOOSDB HTTP Pages Stored Cross-Site Scripting CWE-79 6.1 Medium 2026-09-03
CVE-2026-85451 MOOS core-moos through 10.4.0 Remote Process Termination via Hard-Coded Multicast Passphrase CWE-798 7.1 High 2026-09-03
CVE-2026-85450 MOOS core-moos through 10.4.0 MOOSDB HTTP Server Resource Exhaustion CWE-770 7.5 High 2026-09-03
CVE-2026-85442 MOOS core-moos through 10.4.0 MOOSDB Denial of Service via Unbounded Packet Allocation CWE-789 7.5 High 2026-09-03
CVE-2026-85443 MOOS core-moos through 10.4.0 MOOSDB Accept Loop Denial of Service CWE-400 7.5 High 2026-09-03
CVE-2026-85441 MOOS core-moos through 10.4.0 MOOSDB Denial of Service via Negative Serialized String Length CWE-195 7.5 High 2026-09-03
CVE-2026-85440 MOOS core-moos through 10.4.0 MOOSDB Pre-Authentication Heap Overflow via Negative Packet Length CWE-787 9.8 Critical 2026-09-03
CVE-2026-85432 MOOS core-moos through 10.4.0 MOOSDB Message Source Spoofing via Wire Identity CWE-290 8.2 High 2026-09-03
CVE-2026-85428 MOOS core-moos through 10.4.0 MOOSDB HTTP Server Unauthenticated Variable Write CWE-306 9.8 Critical 2026-09-03
CVE-2026-85424 MOOS core-moos through 10.4.0 Missing Authentication for MOOSDB Publish, Subscribe and DB_CLEAR CWE-306 9.8 Critical 2026-09-03

All 12 known CVE vulnerabilities affecting core-moos with full Chinese analysis, references, and POCs where available.