CVE-2024-42698: Shedaniel Roughlyenoughitems

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Roughly Enough Items (REI) v.16.0.729 and before contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index and decrement stack count in the Roughly Enough Items (REI) mod for Minecraft, which allows in-game item duplication.

Affected products

  • Shedaniel Roughlyenoughitems: before 16.0.744 (fixed in 16.0.744)

Published 2024-08-28. Last modified 2026-06-17.