CVE-2023-7332

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
31/12/2025
Last modified:
31/12/2025

Description

PocketMine-MP versions prior to 4.18.1 contain an improper input validation vulnerability in inventory transaction handling. A remote attacker with a valid player session can request that the server drop more items than are available in the player's hotbar, triggering a server crash and resulting in denial of service.