Vulnerabilities > Cesanta > MJS > High

DATE CVE VULNERABILITY TITLE RISK
2022-01-27 CVE-2021-46521 Classic Buffer Overflow vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via c_vsnprintf at mjs/src/common/str_util.c.
local
low complexity
cesanta CWE-120
7.8
2022-01-27 CVE-2021-46522 Out-of-bounds Write vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0xaff53.
local
low complexity
cesanta CWE-787
7.8
2022-01-27 CVE-2021-46523 Out-of-bounds Write vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via to_json_or_debug at mjs/src/mjs_json.c.
local
low complexity
cesanta CWE-787
7.8
2022-01-27 CVE-2021-46524 Out-of-bounds Write vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via snquote at mjs/src/mjs_json.c.
local
low complexity
cesanta CWE-787
7.8
2022-01-27 CVE-2021-46525 Use After Free vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a heap-use-after-free via mjs_apply at src/mjs_exec.c.
local
low complexity
cesanta CWE-416
7.8
2022-01-27 CVE-2021-46526 Classic Buffer Overflow vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via snquote at src/mjs_json.c.
local
low complexity
cesanta CWE-120
7.8
2022-01-27 CVE-2021-46527 Out-of-bounds Write vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_get_cstring at src/mjs_string.c.
local
low complexity
cesanta CWE-787
7.8