Wasmi Labs maintains a WebAssembly interpreter and runtime implementation that, despite its narrow product scope, serves as a critical building block in blockchain execution environments and other WebAssembly-based systems. The vendor's disclosed vulnerabilities center on its core wasmi product and reflect the parsing and execution-state complexity inherent to a bytecode interpreter. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wasmi Labs over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-28123CRITICAL Wasmi is an efficient and lightweight WebAssembly interpreter with a focus on constrained and embedded systems. In the WASMI Interpreter, an Out-of-bounds Buffer Write will arise i | Mar 21, 2024 | 9.8 | 27 | NO | NO |
CVE-2025-66627HIGH Wasmi is a WebAssembly interpreter focused on constrained and embedded systems. In versions 0.41.0, 0.41.1, 0.42.0 through 0.47.1, 0.50.0 through 0.51.2 and 1.0.0, Wasmi's linear m | Dec 9, 2025 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wasmi Labs.
Media articles that mention a CVE ID that affects a product developed by Wasmi Labs — matched by CVE ID, not by vendor name.