CVE-2024-58253: Casualx Obfstr

Low severity, CVSS 2.9. EPSS: 0.2% chance of exploitation in the next 30 days.

In the obfstr crate before 0.4.4 for Rust, the obfstr! argument type is not restricted to string slices, leading to invalid UTF-8 conversion that produces an invalid value.

Affected products

  • Casualx Obfstr: before 0.4.4 (fixed in 0.4.4)

Published 2025-05-02. Last modified 2026-06-17.