CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “irssi”

14 vulnerabilities found for “irssi”

CVE-2023-29132
MEDIUM5.3

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occurs when printing of a non-formatted line is concurrent with printing of a formatted line.

irssi / irssi
Network
Published Apr 14, 2023
CVE-2020-29602
CRITICAL9.8

The official irssi docker images before 1.1-alpine (Alpine specific) contain a blank password for a root user. System using the irssi docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.

irssi / docker_image
Network
Published Dec 8, 2020
CVE-2019-15717
CRITICAL9.8

Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP.

irssi / irssi+1
Network
Published Aug 29, 2019
CVE-2019-13045
HIGH8.1

Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.

irssi / irssi+2
Network
Published Jun 29, 2019
CVE-2019-5882
CRITICAL9.8

Irssi 1.1.x before 1.1.2 has a use after free when hidden lines are expired from the scroll buffer.

irssi / irssi+4
Network
Published Jan 9, 2019
CVE-2018-7053
CRITICAL9.8

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. There is a use-after-free when SASL messages are received in an unexpected order.

irssi / irssi+5
Network
Published Feb 15, 2018
CVE-2018-7050
HIGH7.5

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. A NULL pointer dereference occurs for an "empty" nick.

irssi / irssi+5
Network
Published Feb 15, 2018
CVE-2018-7054
CRITICAL9.8

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. There is a use-after-free when a server is disconnected during netsplits. NOTE: this issue exists because of an incomplete fix for CVE-2017-7191.

irssi / irssi+5
Network
Published Feb 15, 2018
CVE-2018-7052
HIGH7.5

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. When the number of windows exceeds the available space, a crash due to a NULL pointer dereference would occur.

irssi / irssi+5
Network
Published Feb 15, 2018
CVE-2018-7051
HIGH7.5

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. Certain nick names could result in out-of-bounds access when printing theme strings.

irssi / irssi+6
Network
Published Feb 15, 2018
CVE-2018-5205
HIGH7.5

When using incomplete escape codes, Irssi before 1.0.6 may access data beyond the end of the string.

irssi / irssi+5
Network
Published Jan 6, 2018
CVE-2018-5207
HIGH7.5

When using an incomplete variable argument, Irssi before 1.0.6 may access data beyond the end of the string.

irssi / irssi+1
Network
Published Jan 6, 2018
CVE-2018-5206
CRITICAL9.8

When the channel topic is set without specifying a sender, Irssi before 1.0.6 may dereference a NULL pointer.

irssi / irssi+1
Network
Published Jan 6, 2018
CVE-2018-5208
CRITICAL9.8

In Irssi before 1.0.6, a calculation error in the completion code could cause a heap buffer overflow when completing certain strings.

irssi / irssi+1
Network
Published Jan 6, 2018