A flaw has been found in wren-lang wren up to 0.4.0. Affected by this vulnerability is the function emitOp of the file src/vm/wren_compiler.c. This manipulation causes out-of-bounds read. It is possible to launch the attack on the local host. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Metrics
Affected Vendors & Products
References
History
Sun, 01 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in wren-lang wren up to 0.4.0. Affected by this vulnerability is the function emitOp of the file src/vm/wren_compiler.c. This manipulation causes out-of-bounds read. It is possible to launch the attack on the local host. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | wren-lang wren wren_compiler.c emitOp out-of-bounds | |
| Weaknesses | CWE-119 CWE-125 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-03-01T08:32:11.407Z
Updated: 2026-03-01T08:32:11.407Z
Reserved: 2026-02-28T14:49:56.558Z
Link: CVE-2026-3386
No data.
Status : Received
Published: 2026-03-01T09:15:58.147
Modified: 2026-03-01T09:15:58.147
Link: CVE-2026-3386
No data.