CVE-2017-1000437: Creolabs Gravity

Critical severity, CVSS 9.8. EPSS: 3.8% chance of exploitation in the next 30 days.

Creolabs Gravity 1.0 contains a stack based buffer overflow in the operator_string_add function, resulting in remote code execution.

Affected products

Published 2018-01-02. Last modified 2026-06-17.