Vulnerabilities > Jerryscript

DATE CVE VULNERABILITY TITLE RISK
2023-05-12 CVE-2023-31918 Reachable Assertion vulnerability in Jerryscript 3.0.0
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the parser_parse_function_arguments at jerry-core/parser/js/js-parser.c.
local
low complexity
jerryscript CWE-617
5.5
2023-05-12 CVE-2023-31919 Reachable Assertion vulnerability in Jerryscript 3.0.0
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the jcontext_raise_exception at jerry-core/jcontext/jcontext.c.
local
low complexity
jerryscript CWE-617
5.5
2023-05-12 CVE-2023-31920 Reachable Assertion vulnerability in Jerryscript 3.0.0
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop at jerry-core/vm/vm.c.
local
low complexity
jerryscript CWE-617
5.5
2023-05-12 CVE-2023-31921 Reachable Assertion vulnerability in Jerryscript 3.0.0
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_big_uint_div_mod at jerry-core/ecma/operations/ecma-big-uint.c.
local
low complexity
jerryscript CWE-617
5.5
2023-05-10 CVE-2023-31906 Out-of-bounds Write vulnerability in Jerryscript 3.0.0
Jerryscript 3.0.0(commit 1a2c047) was discovered to contain a heap-buffer-overflow via the component lexer_compare_identifier_to_chars at /jerry-core/parser/js/js-lexer.c.
local
low complexity
jerryscript CWE-787
7.8
2023-05-10 CVE-2023-31907 Out-of-bounds Write vulnerability in Jerryscript 3.0.0
Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via the component scanner_literal_is_created at /jerry-core/parser/js/js-scanner-util.c.
local
low complexity
jerryscript CWE-787
7.8
2023-05-10 CVE-2023-31908 Out-of-bounds Write vulnerability in Jerryscript 3.0
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component ecma_builtin_typedarray_prototype_sort.
local
low complexity
jerryscript CWE-787
7.8
2023-05-10 CVE-2023-31910 Out-of-bounds Write vulnerability in Jerryscript 3.0.0
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component parser_parse_function_statement at /jerry-core/parser/js/js-parser-statm.c.
local
low complexity
jerryscript CWE-787
7.8
2023-04-24 CVE-2023-30406 Resource Exhaustion vulnerability in Jerryscript
Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component ecma_find_named_property at /base/ecma-helpers.c.
local
low complexity
jerryscript CWE-400
5.5
2023-04-24 CVE-2023-30408 Resource Exhaustion vulnerability in Jerryscript
Jerryscript commit 1a2c047 was discovered to contain a segmentation violation via the component build/bin/jerry.
local
low complexity
jerryscript CWE-400
5.5