The Asyncua Project maintains a resource-constrained Python library for OPC UA (Open Platform Communications Unified Architecture) client and server implementations, used in industrial automation and IoT environments where protocol compatibility is essential. Observed vulnerability disclosures have centered on resource-allocation and throttling weaknesses that reflect the library's role handling untrusted network input in denial-of-service–sensitive deployments. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Asyncua Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25304HIGH All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single s | Aug 23, 2022 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Asyncua Project.
Media articles that mention a CVE ID that affects a product developed by Asyncua Project — matched by CVE ID, not by vendor name.