Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-h87r-f4vc-mchv | PocketMine-MP vulnerable to improperly checked dropped item count leading to server crash |
Fri, 02 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 31 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PocketMine-MP versions prior to 4.18.1 contain an improper input validation vulnerability in inventory transaction handling. A remote attacker with a valid player session can request that the server drop more items than are available in the player's hotbar, triggering a server crash and resulting in denial of service. | |
| Title | PocketMine-MP < 4.18.1 Improper Validation of Dropped Item Count Allows Remote Server Crash | |
| Weaknesses | CWE-1284 | |
| References |
|
|
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-02T14:35:36.894Z
Reserved: 2025-12-31T20:56:56.399Z
Link: CVE-2023-7332
Updated: 2026-01-02T14:17:51.413Z
Status : Deferred
Published: 2025-12-31T22:15:47.870
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-7332
No data.
OpenCVE Enrichment
No data.
Github GHSA