Xmplay is a niche audio player application with a focused vulnerability footprint concentrated in its core media-playback functionality. The observed weakness pattern centers on out-of-bounds write conditions, a memory-safety issue typical of native audio processing code that handles untrusted format input. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xmplay over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-19357HIGH XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file. | Dec 24, 2018 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmplay.
Media articles that mention a CVE ID that affects a product developed by Xmplay — matched by CVE ID, not by vendor name.