CVE-2024-41565: Mezz Justenoughitems
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
JustEnoughItems (JEI) 19.5.0.33 and before contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index in JEI for Minecraft, which allows in-game item duplication.
Affected products
- Mezz Justenoughitems: before 11.6.0.1021 (fixed in 11.6.0.1021); from 12.0.0, before 13.1.0.18 (fixed in 13.1.0.18); from 14.0.0, before 15.8.0.11 (fixed in 15.8.0.11); from 16.0.0, before 19.5.0.34 (fixed in 19.5.0.34)
Published 2024-08-28. Last modified 2026-06-17.