CVE-2026-104855
Last modified
CVE-2026-104855 is a low-severity vulnerability rated 2/10 on the CVSS scale. Wasmtime is a runtime for WebAssembly. From 46.0.0 until 46.0.2 and 47.0.3, fuel and epoch preemption checks inside bulk operations including memory.copy, table.grow, and array.copy can expose invalid intermediate state when an embedder mutates a Store in Store::epoch_deadline_callback or continues using a Store after cancellation or a trap.
Description
Wasmtime is a runtime for WebAssembly. From 46.0.0 until 46.0.2 and 47.0.3, fuel and epoch preemption checks inside bulk operations including memory.copy, table.grow, and array.copy can expose invalid intermediate state when an embedder mutates a Store in Store::epoch_deadline_callback or continues using a Store after cancellation or a trap. A cancelled non-nullable table growth can leave null elements, linear-memory growth during memory.copy can invalidate retained raw pointers, and callback-triggered garbage collection during array.copy can invalidate GC pointers, resulting in a crash, invalid memory access, or GC heap corruption. Embeddings whose callbacks only access the host data in Store<T>, and embeddings that discard a Store after timeout or epoch deadline, are not affected. This issue is fixed in versions 46.0.2 and 47.0.3.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-104855?
How severe is CVE-2026-104855?
How do I fix CVE-2026-104855?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-104847ProseMirror's view component renders and manages the editabl…8.5
- CVE-2026-104848Tinypool is a minimal Node.js worker thread pool implementat…9.5
- CVE-2026-104849Tinypool is a minimal Node.js worker thread pool implementat…9.5
- CVE-2026-104851fsspec is a specification and Python implementation framewor…8.8
- CVE-2026-104853Nx is a monorepo solution for TypeScript and polyglot codeba…5.8
- CVE-2026-104854Nx is a monorepo solution for TypeScript and polyglot codeba…8.5
- CVE-2026-104859Nx is a monorepo solution for TypeScript and polyglot codeba…7.3
- CVE-2026-104861probe-image-size gets image dimensions without downloading t…7.5
- CVE-2026-1049A security vulnerability has been detected in LigeroSmart up…5.4
- CVE-2026-104900MISP contains a stored cross-site scripting (XSS) vulnerabil…5.3
- CVE-2026-104901MISP contains a cross-site scripting (XSS) vulnerability in …5.1
- CVE-2026-104906MISP contains a cross-site scripting (XSS) vulnerability in …6.2
Are you affected by CVE-2026-104855?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
