Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2025-46597
Bitcoin Core 0.13.0 through 29.x has an integer overflow.
Bitcoin Core
0.30.0+
MEDIUM 5.3
CVE-2025-46598
Bitcoin Core through 29.0 allows a denial of service via a crafted transaction.
Bitcoin Core
0.30.0+
HIGH 7.5
CVE-2025-54604
Bitcoin Core through 29.0 allows Uncontrolled Resource Consumption (issue 1 of 2).
Bitcoin Core
30.0+
HIGH 7.5
CVE-2025-54605
Bitcoin Core through 29.0 allows Uncontrolled Resource Consumption (issue 2 of 2).
Bitcoin Core
30.0+
MEDIUM 5.3
CVE-2024-55563
Bitcoin Core through 27.2 allows transaction-relay jamming via an off-chain protocol attack, a related issue to CVE-2024-52913. For example, the outc…
Bitcoin Core
after 27.2
MEDIUM 6.5
CVE-2024-52922
In Bitcoin Core before 25.1, an attacker can cause a node to not download the latest block, because there can be minutes of delay when an announcing …
Bitcoin Core
25.1+
MEDIUM 5.3
CVE-2024-52921
In Bitcoin Core before 25.0, a peer can affect the download state of other peers by sending a mutated block.
Bitcoin Core
25.0+
HIGH 7.5
CVE-2019-25220
Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-difficulty header chains (aka a "Ch…
Bitcoin Core
24.0.1+
HIGH 7.5
CVE-2024-52912
Bitcoin Core before 0.21.0 allows a network split that is resultant from an integer overflow (calculating the time offset for newly connecting peers)…
Bitcoin Core
0.21.0+
HIGH 7.5
CVE-2024-52914
In Bitcoin Core before 0.18.0, a node could be stalled for hours when processing the orphans of a crafted unconfirmed transaction.
Bitcoin Core
0.18.0+
HIGH 7.5
CVE-2024-52915
Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (memory consumption) via a crafted INV message.
Bitcoin Core
0.20.0+
HIGH 7.5
CVE-2024-52916
Bitcoin Core before 0.15.0 allows a denial of service (OOM kill of a daemon process) via a flood of minimum difficulty headers.
Bitcoin Core
0.15.0+
HIGH 7.5
CVE-2024-52920
Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed GETDATA message.
Bitcoin Core
0.20.0+
MEDIUM 6.5
CVE-2024-52917
Bitcoin Core before 22.0 has a miniupnp infinite loop in which it allocates memory on the basis of random data received over the network, e.g., large…
Bitcoin Core
22.0+
MEDIUM 6.5
CVE-2024-52919
Bitcoin Core before 22.0 has a CAddrMan nIdCount integer overflow and resultant assertion failure (and daemon exit) via a flood of addr messages.
Bitcoin Core
22.0+
MEDIUM 5.3
CVE-2024-52913
In Bitcoin Core before 0.21.0, an attacker could prevent a node from seeing a specific unconfirmed transaction, because transaction re-requests are m…
Bitcoin Core
0.21.0+
HIGH 7.5
CVE-2024-35202
Bitcoin Core before 25.0 allows remote attackers to cause a denial of service (blocktxn message-handling assertion and node exit) by including transa…
Bitcoin Core
25.0+
MEDIUM 5.3
CVE-2023-50428
In Bitcoin Core through 26.0 and Bitcoin Knots before 25.1.knots20231115, datacarrier size limits can be bypassed by obfuscating data as code (e.g., …
Bitcoin Core
25.1+
HIGH 7.5
CVE-2023-37192
Memory management and protection issues in Bitcoin Core v22 allows attackers to modify the stored sending address within the app's memory, potentiall…
Bitcoin Core
No fix yet
HIGH 7.5
CVE-2023-33297
Bitcoin Core before 24.1, when debug mode is not used, allows attackers to cause a denial of service (e.g., CPU consumption) because draining the inv…
Bitcoin Core
24.1+
MEDIUM 6.5
CVE-2021-31876
Bitcoin Core 0.12.0 through 0.21.1 does not properly implement the replacement policy specified in BIP125, which makes it easier for attackers to tri…
Bitcoin
after 0.21.1
CRITICAL 9.8
CVE-2021-3401EPSS 10%
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath ar…
Bitcoin
0.19.0+
HIGH 7.5
CVE-2021-3195
bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC…
Bitcoin Core
after 0.21.0
HIGH 7.5
CVE-2020-14198
Bitcoin Core 0.20.0 allows remote denial of service.
Bitcoin Core
Patch available
HIGH 7.5
CVE-2017-12842
Bitcoin Core before 0.14 allows an attacker to create an ostensibly valid SPV proof for a payment to a victim who uses an SPV wallet, even if that pa…
Bitcoin Core
0.14.0+
MEDIUM 5.9
CVE-2017-18350
bitcoind and Bitcoin-Qt prior to 0.15.1 have a stack-based buffer overflow if an attacker-controlled SOCKS proxy server is used. This results from an…
Bitcoin Core
0.15.1+
MEDIUM 5.3
CVE-2018-20586
bitcoind and Bitcoin-Qt prior to 0.17.1 allow injection of arbitrary data into the debug log via an RPC call.
Bitcoin Core
No fix yet
HIGH 7.5
CVE-2015-3641
bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application crash) via …
Bitcoin Core
0.10.2+
HIGH 7.5
CVE-2019-15947
In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory. Upon a crash, it may dump a core file. If a user were to mishandle a…
Bitcoin Core
Mitigation only
MEDIUM 5.5
CVE-2018-20587
Bitcoin Core 0.12.0 through 0.17.1 and Bitcoin Knots 0.12.0 through 0.17.x before 0.17.1.knots20181229 have Incorrect Access Control. Local users can…
Bitcoin Core
after 0.17.1