Vulnerabilities
Vulnerable Software
Nsa:  >> Ghidra  >> 11.4.1  Security Vulnerabilities
Ghidra before 12.1 contains a SQL injection vulnerability in BSim filter types that concatenate user-supplied values directly into SQL queries without escaping or parameterization. Remote attackers can inject arbitrary SQL via the BSim network query protocol to read, modify, or delete data in the PostgreSQL database.
CVSS Score
8.7
EPSS Score
0.001
Published
2026-06-10
Ghidra before 12.1.1 contains an uncontrolled memory allocation vulnerability in the Mach-O binary parser that allows attackers to cause denial of service. An attacker can supply a crafted Mach-O binary with an arbitrarily large ncmds load command count value, forcing the parser to allocate excessive heap memory without validating file size, crashing the Ghidra JVM.
CVSS Score
6.7
EPSS Score
0.0
Published
2026-06-10


Contact Us

Shodan ® - All rights reserved