Discordjs maintains the Opus audio codec library, a narrowly scoped component embedded in voice-communication applications and SDKs. The observed vulnerability signal centers on uninitialized-resource usage, reflecting the memory-management demands of low-level audio processing. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Discordjs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25345HIGH All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder with zero channels, or a non-initialized buffer. This leads | Jun 17, 2022 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Discordjs.
Media articles that mention a CVE ID that affects a product developed by Discordjs — matched by CVE ID, not by vendor name.