VDB
Sign up

package

npm/@openzeppelin/contracts

pkg:npm/%40openzeppelin/contracts

—0.0npm
GHSA-9rcw-c2f9-2j55· CVE-2025-54070

OpenZeppelin Contracts Bytes's lastIndexOf function with position argument performs out-of-bound memory access on empty buffers

Modified: 7/17/2025

MEDIUMnpm
GHSA-m6w8-fq7v-ph4m

GovernorCompatibilityBravo incorrect ABI encoding may lead to unexpected behavior

Modified: 1/12/2022

LOWnpm
GHSA-wmpv-c2jp-j2xg

ERC1155Supply vulnerability in OpenZeppelin Contracts

Modified: 11/15/2021