Moonlight Stream is a remote desktop and game-streaming client that spans multiple platforms and implementations, including embedded variants and console-specific ports such as Switch and TV applications. The vendor's limited disclosure history provides minimal structural signal regarding recurring weakness patterns; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Moonlight Stream over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-42799HIGH Moonlight-common-c contains the core GameStream client code shared between Moonlight clients. Moonlight-common-c is vulnerable to buffer overflow starting in commit 50c0a51b10ecc5b | Dec 14, 2023 | 8.8 | 23 | NO | NO |
CVE-2023-42800HIGH Moonlight-common-c contains the core GameStream client code shared between Moonlight clients. Moonlight-common-c is vulnerable to buffer overflow starting in commit 50c0a51b10ecc5b | Dec 14, 2023 | 8.8 | 22 | NO | NO |
CVE-2023-42801HIGH Moonlight-common-c contains the core GameStream client code shared between Moonlight clients. Moonlight-common-c is vulnerable to buffer overflow starting in commit f57bd745b4cbed5 | Dec 14, 2023 | 7.6 | 21 | NO | NO |
CVE-2020-11024HIGH In Moonlight iOS/tvOS before 4.0.1, the pairing process is vulnerable to a man-in-the-middle attack. The bug has been fixed in Moonlight v4.0.1 for iOS and tvOS. | Apr 29, 2020 | 8.2 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Moonlight Stream.
Media articles that mention a CVE ID that affects a product developed by Moonlight Stream — matched by CVE ID, not by vendor name.