CVE-2025-64704: Bytecodealliance Webassembly Micro Runtime
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. Prior to version 2.4.4, WAMR is susceptible to a segmentation fault in v128.store instruction. This issue has been patched in version 2.4.4.
Affected products
- Bytecodealliance Webassembly Micro Runtime: before 2.4.4 (fixed in 2.4.4)
Published 2025-11-25. Last modified 2026-06-17.