CVE-2024-58264: Cosmwasm Serde-JSON-Wasm

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data.

Affected products

  • Cosmwasm Serde-JSON-Wasm: before 1.0.1 (fixed in 1.0.1)

Published 2025-07-27. Last modified 2026-06-17.