Vulnerabilities > Jerryscript
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-05-12 | CVE-2023-31918 | Reachable Assertion vulnerability in Jerryscript 3.0.0 Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the parser_parse_function_arguments at jerry-core/parser/js/js-parser.c. | 5.5 |
2023-05-12 | CVE-2023-31919 | Reachable Assertion vulnerability in Jerryscript 3.0.0 Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the jcontext_raise_exception at jerry-core/jcontext/jcontext.c. | 5.5 |
2023-05-12 | CVE-2023-31920 | Reachable Assertion vulnerability in Jerryscript 3.0.0 Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop at jerry-core/vm/vm.c. | 5.5 |
2023-05-12 | CVE-2023-31921 | Reachable Assertion vulnerability in Jerryscript 3.0.0 Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_big_uint_div_mod at jerry-core/ecma/operations/ecma-big-uint.c. | 5.5 |
2023-05-10 | CVE-2023-31906 | Out-of-bounds Write vulnerability in Jerryscript 3.0.0 Jerryscript 3.0.0(commit 1a2c047) was discovered to contain a heap-buffer-overflow via the component lexer_compare_identifier_to_chars at /jerry-core/parser/js/js-lexer.c. | 7.8 |
2023-05-10 | CVE-2023-31907 | Out-of-bounds Write vulnerability in Jerryscript 3.0.0 Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via the component scanner_literal_is_created at /jerry-core/parser/js/js-scanner-util.c. | 7.8 |
2023-05-10 | CVE-2023-31908 | Out-of-bounds Write vulnerability in Jerryscript 3.0 Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component ecma_builtin_typedarray_prototype_sort. | 7.8 |
2023-05-10 | CVE-2023-31910 | Out-of-bounds Write vulnerability in Jerryscript 3.0.0 Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component parser_parse_function_statement at /jerry-core/parser/js/js-parser-statm.c. | 7.8 |
2023-04-24 | CVE-2023-30406 | Resource Exhaustion vulnerability in Jerryscript Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component ecma_find_named_property at /base/ecma-helpers.c. | 5.5 |
2023-04-24 | CVE-2023-30408 | Resource Exhaustion vulnerability in Jerryscript Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component build/bin/jerry. | 5.5 |