CNNVD-202601-4606 Information

CNNVD ID

CNNVD-202601-4606

CVE-2026-24794

  • CNNVD Published: 2026-01-27

Description (Chinese)

Cardboard是Cardboard - Bukkit for Fabric开源的一个模组开发接口。 cardboard 1.21.4之前版本存在安全漏洞,该漏洞源于内存缓冲区操作限制不当,可能导致程序文件WorldImpl.Java中的漏洞被利用。

Description (English)

Cardboard is a module development interface for the Cardboard - Bukkit for Fabric Open Source. There was a security loophole in previous versions of cardboard 1.21.4, which stemmed from inappropriate operating restrictions on the built-in buffer zone, which could lead to the exploitation of the loophole in the programme document WorldImpl. Java.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Cardboard - Bukkit for Fabric

Published

2026-01-27

Last Modified

2026-02-24

References

https://github.com/CardboardPowered/cardboard/pull/506

Share on: