Mystenlabs maintains the Sui blockchain platform, a niche but increasingly prominent smart-contract system designed for high-throughput decentralized applications. Observed vulnerabilities concentrate on code-injection flaws and out-of-bounds writes, reflecting the memory-safety and runtime-execution challenges inherent to virtual-machine and runtime environments. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mystenlabs over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-42374CRITICAL An issue in mystenlabs Sui Blockchain before v.1.6.3 allow a remote attacker to execute arbitrary code and cause a denial of service via a crafted compressed script to the Sui node | Feb 13, 2024 | 9.8 | 28 | NO | NO |
CVE-2023-36184HIGH CMysten Labs Sui blockchain v1.2.0 was discovered to contain a stack overflow via the component /spec/openrpc.json. | Sep 8, 2023 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mystenlabs.
Media articles that mention a CVE ID that affects a product developed by Mystenlabs — matched by CVE ID, not by vendor name.