Chocolate Doom is a source port and compatibility layer for the classic Doom game engine, with a minimal vulnerability footprint concentrated in this single gaming application and its variant Crispy Doom. The observed disclosures do not cluster around a specific weakness class; treat this as a compact vendor profile rather than a trend line, with live severity and exploitation counts shown alongside this summary.
The number and severity of CVEs published that impact products developed by Chocolate Doom over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-14983CRITICAL The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A malicious user can overwrite the se | Jun 22, 2020 | 9.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Chocolate Doom.
Media articles that mention a CVE ID that affects a product developed by Chocolate Doom — matched by CVE ID, not by vendor name.