Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jerryscript vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2020-13649
parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated by a scanner_reverse_info_list NULL pointer dereference and a scanner_scan_all assertion failure.
Jerryscript Jerryscript 2.2.0
7.5
CVSSv3
CVE-2020-14163
An issue exists in ecma/operations/ecma-container-object.c in JerryScript 2.2.0. Operations with key/value pairs did not consider the case where garbage collection is triggered after the key operation but before the value operation, as demonstrated by improper read access to memo...
Jerryscript Jerryscript 2.2.0
7.8
CVSSv3
CVE-2021-41682
There is a heap-use-after-free at ecma-helpers-string.c:1940 in ecma_compare_ecma_non_direct_strings in JerryScript 2.4.0
Jerryscript Jerryscript 2.4.0
7.8
CVSSv3
CVE-2021-41683
There is a stack-overflow at ecma-helpers.c:326 in ecma_get_lex_env_type in JerryScript 2.4.0
Jerryscript Jerryscript 2.4.0
9.8
CVSSv3
CVE-2023-38961
Buffer Overflwo vulnerability in JerryScript Project jerryscript v.3.0.0 allows a remote malicious user to execute arbitrary code via the scanner_is_context_needed component in js-scanner-until.c.
Jerryscript Jerryscript 3.0.0
9.8
CVSSv3
CVE-2023-36109
Buffer Overflow vulnerability in JerryScript version 3.0, allows remote malicious users to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.
Jerryscript Jerryscript 3.0
1 Github repository
7.5
CVSSv3
CVE-2023-36201
An issue in JerryscriptProject jerryscript v.3.0.0 allows an malicious user to obtain sensitive information via a crafted script to the arrays.
Jerryscript Jerryscript 3.0.0
7.8
CVSSv3
CVE-2023-31906
Jerryscript 3.0.0(commit 1a2c047) exists to contain a heap-buffer-overflow via the component lexer_compare_identifier_to_chars at /jerry-core/parser/js/js-lexer.c.
Jerryscript Jerryscript 3.0.0
7.8
CVSSv3
CVE-2023-31907
Jerryscript 3.0.0 exists to contain a heap-buffer-overflow via the component scanner_literal_is_created at /jerry-core/parser/js/js-scanner-util.c.
Jerryscript Jerryscript 3.0.0
7.8
CVSSv3
CVE-2023-31908
Jerryscript 3.0 (commit 05dbbd1) exists to contain a heap-buffer-overflow via the component ecma_builtin_typedarray_prototype_sort.
Jerryscript Jerryscript 3.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »