Description
FastAsyncWorldEdit (FAWE) is designed for efficient world editing. This vulnerability enables the attacker to select a region with the `Infinity` keyword (case-sensitive!) and executes any operation. This has a possibility of bringing the performing server down. This issue has been fixed in version 2.6.3.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1901 | FastAsyncWorldEdit (FAWE) is designed for efficient world editing. This vulnerability enables the attacker to select a region with the `Infinity` keyword (case-sensitive!) and executes any operation. This has a possibility of bringing the performing server down. This issue has been fixed in version 2.6.3. |
Github GHSA |
GHSA-whj9-m24x-qhhp | FastAsyncWorldEdit vulnerable to Uncontrolled Resource Consumption |
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 27 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-11-27T21:02:52.576Z
Reserved: 2023-06-20T14:02:45.592Z
Link: CVE-2023-35925
Updated: 2024-08-02T16:37:40.084Z
Status : Modified
Published: 2023-06-23T16:15:09.477
Modified: 2024-11-21T08:08:59.337
Link: CVE-2023-35925
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA