Hi WAMR team, I recently found a security vulnerability through fuzzing, and I opened an advisory report on the github. Given that the vulnerability has a pretty high severity, would anybody on the security be able to take a look? Thanks!
https://github.com/bytecodealliance/wasm-micro-runtime/security/advisories/GHSA-hw2g-7rqv-2393
cc @Stephen Berard
Hi all -- just checking if there are any updates on this?
Thank you for reporting it. This is a good question about WAMR's security model regarding AOT and AOT files. We are actively reviewing your submission and will update this shortly.
Last updated: Mar 23 2026 at 16:19 UTC