İçeriğe atla
Noroxi

JerryScript kayıtları

jerryscript üreticisine ait 98 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
4
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

98 kayıt
  • CVE-2019-1010176
    40Planlayın

    JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow.

    KritikCVSS 9,8İstismar yokEPSS %3

    jerryscript · jerryscript25 Tem 2019

  • CVE-2023-36109
    40Planlayın

    Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_ra

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    jerryscript · jerryscript20 Eyl 2023

  • CVE-2017-18212
    40Planlayın

    An issue was discovered in JerryScript 1.0.

    KritikCVSS 9,8İstismar yokEPSS %2

    jerryscript · jerryscript1 Mar 2018

  • CVE-2021-42863
    40Planlayın

    A buffer overflow in ecma_builtin_typedarray_prototype_filter() in JerryScript version fe3a5c0 allows an attacker to construct a fake object

    KritikCVSS 9,8İstismar yokEPSS %2

    jerryscript · jerryscript12 May 2022

  • CVE-2018-11419
    39İzleyin

    An issue was discovered in JerryScript 1.0.

    KritikCVSS 9,8İstismar yokEPSS %2

    jerryscript · jerryscript24 May 2018

  • CVE-2018-11418
    39İzleyin

    An issue was discovered in JerryScript 1.0.

    KritikCVSS 9,8İstismar yokEPSS %2

    jerryscript · jerryscript24 May 2018

  • CVE-2023-38961
    39İzleyin

    Buffer Overflwo vulnerability in JerryScript Project jerryscript v.3.0.0 allows a remote attacker to execute arbitrary code via the scanner_

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript21 Ağu 2023

  • CVE-2020-23303
    39İzleyin

    There is a heap-buffer-overflow at jmem-poolman.c:165 in jmem_pools_collect_empty in JerryScript 2.2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2020-22597
    39İzleyin

    An issue in Jerrscript- project Jerryscrip v.

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript3 Tem 2023

  • CVE-2020-23321
    39İzleyin

    There is a heap-buffer-overflow at lit-strings.c:431 in lit_read_code_unit_from_utf8 in JerryScript 2.2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2020-23323
    39İzleyin

    There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape in JerryScript 2.2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2020-23306
    39İzleyin

    There is a stack-overflow at ecma-regexp-object.c:535 in ecma_regexp_match in JerryScript 2.2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2020-23302
    39İzleyin

    There is a heap-use-after-free at ecma-helpers-string.c:772 in ecma_ref_ecma_string in JerryScript 2.2.0

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2021-43453
    39İzleyin

    A Heap-based Buffer Overflow vulnerability exists in JerryScript 2.4.0 and prior versions via an out-of-bounds read in parser_parse_for_stat

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript7 Nis 2022

  • CVE-2021-41751
    39İzleyin

    Buffer overflow vulnerability in file ecma-builtin-array-prototype.c:909 in function ecma_builtin_array_prototype_object_slice in Jerryscrip

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript5 Nis 2022

  • CVE-2021-41752
    39İzleyin

    Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021 due to an unbounded recur

    KritikCVSS 9,8İstismar yokEPSS %1

    jerryscript · jerryscript5 Nis 2022

  • CVE-2020-29657
    36İzleyin

    In JerryScript 2.3.0, there is an out-of-bounds read in main_print_unhandled_exception in the main-utils.c file.

    KritikCVSS 9,1İstismar yokEPSS %1

    jerryscript · jerryscript9 Ara 2020

  • CVE-2021-26195
    35İzleyin

    An issue was discovered in JerryScript 2.4.0.

    YüksekCVSS 8,8İstismar yokEPSS %1

    jerryscript · jerryscript10 Haz 2021

  • CVE-2017-14749
    32İzleyin

    JerryScript 1.0 allows remote attackers to cause a denial of service (jmem_heap_alloc_block_internal heap memory corruption) or possibly exe

    YüksekCVSS 7,8İstismar yokEPSS %2

    jerryscript · jerryscript26 Eyl 2017

  • CVE-2017-9250
    31İzleyin

    The lexer_process_char_literal function in jerry-core/parser/js/js-lexer.c in JerryScript 1.0 does not skip memory allocation for empty stri

    YüksekCVSS 7,5İstismar yokEPSS %2

    jerryscript · jerryscript28 May 2017

  • CVE-2020-13991
    31İzleyin

    vm/opcodes.c in JerryScript 2.2.0 allows attackers to hijack the flow of control by controlling a register.

    YüksekCVSS 7,5İstismar yokEPSS %2

    jerryscript · jerryscript24 Eyl 2020

  • CVE-2020-13649
    31İzleyin

    parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated by a scanner_reverse_

    YüksekCVSS 7,5İstismar yokEPSS %2

    jerryscript · jerryscript28 May 2020

  • CVE-2021-44988
    31İzleyin

    Jerryscript v3.0.0 and below was discovered to contain a stack overflow via ecma_find_named_property in ecma-helpers.c.

    YüksekCVSS 7,8İstismar yokEPSS %1

    jerryscript · jerryscript24 Oca 2022

  • CVE-2022-22895
    31İzleyin

    Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in /jerry-core/ecma/base/ecma-hel

    YüksekCVSS 7,8İstismar yokEPSS %1

    jerryscript · jerryscript20 Oca 2022

  • CVE-2020-24345
    31İzleyin

    JerryScript through 2.3.0 allows stack consumption via function a(){new new Proxy(a,{})}JSON.parse("[]",a).

    YüksekCVSS 7,8İstismar yokEPSS %1

    jerryscript · jerryscript13 Ağu 2020