Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Adplug Project

First CVE: Oct 1, 2018Active for: 8 yearsTotal CVEs: 8

Adplug Project maintains a niche audio-playback library focused on retro chiptune and tracker formats, which despite narrow deployment achieves prominence through its use in emulation, media software, and legacy game preservation contexts. Vulnerabilities affecting the library skew toward serious outcomes, with a meaningful share reaching critical severity and concentration in memory-safety issues such as out-of-bounds writes and double-free conditions that reflect the complexity of parsing untrusted audio files. Defenders should monitor this vendor's releases when integrating the library into applications that process untrusted input; live severity and exploitation status are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
4.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
9.1
Avg CVSS Score
Higher Avg CVSS Score than 88% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Adplug Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 1, 2018
7 years ago
Most Recent CVE
Aug 18, 2019
2,532 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2019-15151CRITICAL
AdPlug 2.3.1 has a double free in the Cu6mPlayer class in u6m.h.
Aug 18, 20199.831NONO
CVE-2018-17825CRITICAL
An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's two OPLDestroy calls, each of wh
Oct 1, 20189.831NONO
CVE-2019-14734HIGH
AdPlug 2.3.1 has multiple heap-based buffer overflows in CmtkLoader::load() in mtk.cpp.
Aug 7, 20198.828NONO
CVE-2019-14733HIGH
AdPlug 2.3.1 has multiple heap-based buffer overflows in CradLoader::load() in rad.cpp.
Aug 7, 20198.827NONO
CVE-2019-14732HIGH
AdPlug 2.3.1 has multiple heap-based buffer overflows in Ca2mLoader::load() in a2m.cpp.
Aug 7, 20198.827NONO
CVE-2019-14692HIGH
AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp.
Aug 6, 20198.827NONO
CVE-2019-14691HIGH
AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp.
Aug 6, 20198.827NONO
CVE-2019-14690HIGH
AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp.
Aug 6, 20198.827NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
75%
25%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (25.0%)
Unknown0 (0.0%)
Required6 (75.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None8 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Adplug Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Adplug Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Adplug Project's Products

View all 1 CNAs →

Top CWEs