CVE-2024-58253: Casualx Obfstr
Low severity, CVSS 2.9. EPSS: 0.2% chance of exploitation in the next 30 days.
In the obfstr crate before 0.4.4 for Rust, the obfstr! argument type is not restricted to string slices, leading to invalid UTF-8 conversion that produces an invalid value.
Affected products
- Casualx Obfstr: before 0.4.4 (fixed in 0.4.4)
Published 2025-05-02. Last modified 2026-06-17.