Vulnerabilities in M2Team

20 results
Vexday analysis

M2Team apresenta 20 vulnerabilidades catalogadas, com 14 divulgadas nos últimos 90 dias, indicando atividade recente significativa. Nenhuma vulnerabilidade crítica foi registrada e não há evidência de exploração em ataques ativos (KEV), reduzindo o risco imediato. A fraqueza dominante é CWE-125 (leitura além dos limites de buffer), típica de problemas de validação de entrada que requerem atenção em processos de patching.

CVE-2026-27114MEDIUMNanaZip has ROMFS Archive Infinite LoopEPSS 0.3%CVE-2026-44215MEDIUMNanaZip: Heap out-of-bounds write in NanaZip UFS directory parserEPSS 0.2%CVE-2026-47224MEDIUMNanaZip: Heap buffer-overflow read in NanaZip LVM metadata CRC checkEPSS 0.2%CVE-2026-47223MEDIUMNanaZip: Heap out-of-bounds read in NanaZip AVB hashtree descriptor parser via 32-bit unsigned integer overflowEPSS 0.2%CVE-2026-26282MEDIUMNanaZip has DotNet Single file OOB Heap ReadEPSS 0.2%CVE-2026-47222MEDIUMNanaZip: Heap out-of-bounds read in NanaZip AVB property descriptor parser via unsigned integer underflowEPSS 0.2%CVE-2026-27014MEDIUMNanZip has ROMFS Archive Infinite Loop / Stack OverflowEPSS 0.2%CVE-2026-27709MEDIUMNanaZip .NET Single-File Manifest Parser Vulnerable to Out-of-Bounds Read via Unchecked RelativePathLengthEPSS 0.1%CVE-2026-27711MEDIUMNanaZip UFS Archive Parser Memory Corruption via Unvalidated Directory Record LengthEPSS 0.1%CVE-2026-27710MEDIUMNanaZip .NET Single-File Parser Integer Underflow Leads to Unbounded Allocation (DoS)EPSS 0.1%CVE-2026-42446MEDIUMNanaZip: Stack out-of-bounds read in NanaZip ZealFS bitmap parserEPSS 0.1%CVE-2026-55782LOWNanaZip: Unbounded memory allocation (DoS) in NanaZip WebAssembly parser via attacker-controlled section/name length fieldsEPSS 0.1%CVE-2026-55781LOWNanaZip: Unbounded memory allocation (DoS) in NanaZip UFS parser via unvalidated fs_bsize/fs_fsize superblock fieldsEPSS 0.1%CVE-2026-55783LOWNanaZip: NULL pointer dereference in Extract() of all seven NanaZip custom archive handlers when extracting/testing the whole archiveEPSS 0.1%CVE-2026-55780LOWNanaZip: Uncaught exception / unbounded allocation in NanaZip .NET single-file Extract() via unvalidated entry SizeEPSS 0.1%CVE-2026-42445LOWNanaZip: Uncontrolled recursion in NanaZip UFS directory traversal causes stack exhaustionEPSS 0.1%CVE-2026-42443LOWNanaZip: Integer divide-by-zero in NanaZip UFS inode offset calculationEPSS 0.1%CVE-2026-42442LOWNanaZip: Null-pointer dereference in NanaZip UFS parser when root inode is a symlinkEPSS 0.1%CVE-2026-42444LOWNanaZip: Unbounded resource consumption in NanaZip littlefs parser via attacker-controlled BlockCountEPSS 0.1%CVE-2026-42355LOWNanaZip: Uncontrolled recursion in NanaZip Electron ASAR parser causes stack exhaustionEPSS 0.1%