A vulnerability was detected in wren-lang wren up to 0.4...
Moderate severity
Unreviewed
Published
Mar 1, 2026
to the GitHub Advisory Database
•
Updated Mar 10, 2026
Description
Published by the National Vulnerability Database
Mar 1, 2026
Published to the GitHub Advisory Database
Mar 1, 2026
Last updated
Mar 10, 2026
A vulnerability was detected in wren-lang wren up to 0.4.0. Affected is the function resolveLocal of the file src/vm/wren_compiler.c. The manipulation results in uncontrolled recursion. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
References