İçeriğe atla
Noroxi

QuickJS Project kayıtları

quickjs project üreticisine ait 14 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%71,4
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

14 kayıt
  • CVE-2025-62491
    35İzleyin

    Use-after-free in js_std_promise_rejection_check in QuickJS

    YüksekCVSS 8,8İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-62490
    35İzleyin

    Use-after-free in js_print_object in QuickJS

    YüksekCVSS 8,8İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-46688
    33İzleyin

    quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer overflow.

    YüksekCVSS 8,4İstismar yokEPSS %0

    quickjs-ng · quickjs27 Nis 2025

  • CVE-2020-22876
    30İzleyin

    Buffer Overflow vulnerability in quickjs.c in QuickJS, allows remote attackers to cause denial of service.

    YüksekCVSS 7,5İstismar yokEPSS %2

    quickjs project · quickjs13 Tem 2021

  • CVE-2023-31922
    30İzleyin

    QuickJS commit 2788d71 was discovered to contain a stack-overflow via the component js_proxy_isArray at quickjs.c.

    YüksekCVSS 7,5İstismar yokEPSS %1

    quickjs project · quickjs12 May 2023

  • CVE-2023-48183
    30İzleyin

    QuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of "this" with eval.

    YüksekCVSS 7,5İstismar yokEPSS %1

    quickjs project · quickjs23 Nis 2024

  • CVE-2025-69654
    30İzleyin

    A crafted JavaScript input executed with the QuickJS release 2025-09-13, fixed in commit fcd33c1afa7b3028531f53cd1190a3877454f6b3 (2025-12-1

    YüksekCVSS 7,5İstismar yokEPSS %0

    quickjs project · quickjs6 Mar 2026

  • CVE-2025-62494
    28İzleyin

    Type confusion in string addition in QuickJS

    YüksekCVSS 7,1İstismar yokEPSS %1

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-62496
    28İzleyin

    Integer overflow in js_bigint_from_string in QuickJS

    YüksekCVSS 7,1İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-62495
    28İzleyin

    Type confusion in string addition in QuickJS

    YüksekCVSS 7,1İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-69653
    26İzleyin

    A crafted JavaScript input can trigger an internal assertion failure in QuickJS release 2025-09-13, fixed in commit 1dbba8a88eaa40d15a8a9b70

    OrtaCVSS 6,5İstismar yokEPSS %0

    quickjs project · quickjs6 Mar 2026

  • CVE-2025-62492
    23İzleyin

    Heap out-of-bounds read in js_typed_array_indexOf in QuickJS

    OrtaCVSS 5,9İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2025-62493
    23İzleyin

    Heap out-of-bounds read in js_bigint_to_string1 in QuickJS

    OrtaCVSS 5,9İstismar yokEPSS %0

    quickjs project · quickjs16 Eki 2025

  • CVE-2023-48184
    15İzleyin

    QuickJS before 7414e5f has a quickjs.h JS_FreeValueRT use-after-free because of incorrect garbage collection of async functions with closure

    DüşükCVSS 3,9İstismar yokEPSS %0

    quickjs project · quickjs23 Nis 2024