CYBER CODE RED

Get real-time updates on Telegram

P5Verified

CVE-2023-7332: PocketMine-MP 0 to before 4.18.1

CVE-2023-7332. EPSS 0.00396 (percentile 0.31555), scored 2026-10-06.

Affected technology

PocketMine-MP · 0 to before 4.18.1
pmmp

Description’s affected range: versions prior to 4.18.1

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Network (remote) · Low privileges required · No user interaction required

What an attacker can do

A remote attacker with a valid player session can request that the server drop more items than are available in the player's hotbar, triggering a server crash and resulting in denial of service. Vendor/CNA’s CVSS 4.0 assessment (base score 7.1/10) rates confidentiality and integrity impact as none; availability impact as high.

Published

CWE
CWE-1284
CCR priority
0.1 /100 (P5)
EPSS
0.00396 · percentile 0.31659 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2023-7332.html