luajit records
6 published records for vendor luajit.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read3
- CWE-121 Stack-based Buffer Overflow1
- CWE-476 NULL Pointer Dereference1
- CWE-843 Access of Resource Using Incompatible Type ('Type Confusion')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-25176No exploit | LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240626 have a stack-buffer-overflow in lj_strfmt_wfnum in lj_strfmt_num.c.luajit · luajit · CWE-121 | Critical9.8 | — | 0.6% | Jul 7, 2025 |
36Monitor | CVE-2019-19391No exploit | In LuaJIT through 2.0.5, as used in Moonjit before 2.1.2 and other products, debug.getinfo has a type confusion issue that leads to arbitrarluajit · luajit · CWE-843 | Critical9.1 | — | 1.3% | Nov 29, 2019 |
36Monitor | CVE-2024-25178No exploit | LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an out-of-bounds read in the stack-overflow handler in lj_state.c.luajit · luajit · CWE-125 | Critical9.1 | — | 0.6% | Jul 7, 2025 |
31Monitor | CVE-2020-15890No exploit | LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.luajit · luajit · CWE-125 | High7.5 | — | 2.9% | Jul 21, 2020 |
30Monitor | CVE-2020-24372No exploit | LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in lj_err.c.luajit · luajit · CWE-125 | High7.5 | — | 1.5% | Aug 17, 2020 |
30Monitor | CVE-2024-25177No exploit | LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an unsinking of IR_FSTORE for NULL metatable, which leads to Denial of Seluajit · luajit · CWE-476 | High7.5 | — | 0.5% | Jul 7, 2025 |
- CVE-2024-2517639Monitor
LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240626 have a stack-buffer-overflow in lj_strfmt_wfnum in lj_strfmt_num.c.
CriticalCVSS 9.8No exploitEPSS 1%luajit · luajitJul 7, 2025
- CVE-2019-1939136Monitor
In LuaJIT through 2.0.5, as used in Moonjit before 2.1.2 and other products, debug.getinfo has a type confusion issue that leads to arbitrar
CriticalCVSS 9.1No exploitEPSS 1%luajit · luajitNov 29, 2019
- CVE-2024-2517836Monitor
LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an out-of-bounds read in the stack-overflow handler in lj_state.c.
CriticalCVSS 9.1No exploitEPSS 1%luajit · luajitJul 7, 2025
- CVE-2020-1589031Monitor
LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.
HighCVSS 7.5No exploitEPSS 3%luajit · luajitJul 21, 2020
- CVE-2020-2437230Monitor
LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in lj_err.c.
HighCVSS 7.5No exploitEPSS 1%luajit · luajitAug 17, 2020
- CVE-2024-2517730Monitor
LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an unsinking of IR_FSTORE for NULL metatable, which leads to Denial of Se
HighCVSS 7.5No exploitEPSS 1%luajit · luajitJul 7, 2025