All 4 CVE vulnerabilities found in js-libp2p, with AI-generated Chinese analysis, references, and POCs.
Vendor: libp2p
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-49866 | libp2p: CPU DoS via oversized IHAVE and IWANT control message arrays CWE-770 | 7.5 | High | 2026-07-08 |
| CVE-2026-45783 | libp2p: Unvalidated PUT_VALUE records allow unbounded disk exhaustion on DHT server nodes CWE-20 | 7.5 | High | 2026-06-10 |
| CVE-2026-46679 | libp2p: Memory DoS via subscription flood of unique topics CWE-20 | 7.5 | High | 2026-06-10 |
| CVE-2022-23487 | libp2p denial of service vulnerability from lack of resource management CWE-400 | 7.5 | High | 2022-12-07 |
All 4 known CVE vulnerabilities affecting js-libp2p with full Chinese analysis, references, and POCs where available.