Vulnerabilidades em Square
4 resultadosAnálise Vexday
Square apresenta uma pegada de vulnerabilidade mínima na base do Vexday com apenas 1 CVE registrado, nenhum em exploração ativa (KEV) e nenhuma crítica. A vulnerabilidade identificada (CWE-674, relacionada a recursão não controlada) não representa ameaça imediata, sendo anterior aos últimos 90 dias. O risco atual é baixo, sem evidências de atividade adversarial.
CVE-2020-36645MEDIUMsquare squalor sql injectionEPSS 0.7%CVE-2026-63126HIGHWire: Unauthenticated decoder crash via 32-bit length integer overflow in ByteArrayProtoReader32 (incomplete fix of CVE-2026-45799)EPSS 0.7%CVE-2026-45799HIGHWire: skipGroup() missing negative-length check allows 10-byte payload to crash any Wire-decoding serviceEPSS 0.5%CVE-2024-58103MEDIUMSquare Wire before 5.2.0 does not enforce a recursion limit on nested groups in ByteArrayProtoReader32.kt and ProtoReader.kt.EPSS 0.4%