Wasmtime
Security Risk Profile
28
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 6 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 18, 2025 to present
6
Total CVEs
2
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
28/100
low
Severity Distribution
Critical
0High
2Medium
0Low
4Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
No CWE data available
Most Affected Products
1. bytecodealliance Wasmtime Rust10
2. Wasmtime Wasmtime7
3. rust/wasmtime4
4. rust/wasmtime-wasi3
5. pip/wasmtime-bin1
Recent Vulnerabilities
See more →CVE-2026-54786
CVSS 2.3low
Wasmtime: Leak in WASIp1 `fd_renumber` implementation
7/1/2026🔧 No Patch
REDHAT-BUG-2477467
CVSS 7.0high
5/14/2026🔧 No Patch
REDHAT-BUG-2457008
CVSS 7.0high
4/9/2026🔧 No Patch
CVE-2025-62711
CVSS 3.1low
Wasmtime vulnerable to segfault when using component resources
10/24/2025
CVE-2025-61670
CVSS 1.0low
Wasmtime has memory leak in C API with `externref` and `anyref` types
10/7/2025
CVE-2025-53901
CVSS 3.5low
Wasmtime has host panic with `fd_renumber` WASIp1 function
7/18/2025
Monitor Wasmtime in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.