Vulnerabilities > Jerryscript

DATE CVE VULNERABILITY TITLE RISK
2020-08-13 CVE-2020-24345 Out-of-bounds Write vulnerability in Jerryscript
JerryScript through 2.3.0 allows stack consumption via function a(){new new Proxy(a,{})}JSON.parse("[]",a).
local
low complexity
jerryscript CWE-787
7.8
2020-08-13 CVE-2020-24344 Out-of-bounds Read vulnerability in Jerryscript
JerryScript through 2.3.0 has a (function({a=arguments}){const arguments}) buffer over-read.
local
low complexity
jerryscript CWE-125
7.1
2020-06-15 CVE-2020-14163 Out-of-bounds Read vulnerability in Jerryscript 2.2.0
An issue was discovered in ecma/operations/ecma-container-object.c in JerryScript 2.2.0.
network
low complexity
jerryscript CWE-125
7.5
2020-05-28 CVE-2020-13649 Reachable Assertion vulnerability in Jerryscript 2.2.0
parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated by a scanner_reverse_info_list NULL pointer dereference and a scanner_scan_all assertion failure.
network
low complexity
jerryscript CWE-617
7.5
2020-05-27 CVE-2020-13623 Resource Exhaustion vulnerability in Jerryscript 2.2.0
JerryScript 2.2.0 allows attackers to cause a denial of service (stack consumption) via a proxy operation.
network
low complexity
jerryscript CWE-400
7.5
2020-05-27 CVE-2020-13622 Reachable Assertion vulnerability in Jerryscript 2.2.0
JerryScript 2.2.0 allows attackers to cause a denial of service (assertion failure) because a property key query for a Proxy object returns unintended data.
network
low complexity
jerryscript CWE-617
7.5
2019-07-25 CVE-2019-1010176 Out-of-bounds Write vulnerability in Jerryscript 1.0
JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow.
network
low complexity
jerryscript CWE-787
critical
9.8
2018-08-20 CVE-2018-1000636 NULL Pointer Dereference vulnerability in Jerryscript 1.0
JerryScript version Tested on commit f86d7459d195c8ba58479d1861b0cc726c8b3793.
network
low complexity
jerryscript CWE-476
6.5
2018-05-24 CVE-2018-11419 Out-of-bounds Read vulnerability in Jerryscript 1.0
An issue was discovered in JerryScript 1.0.
network
low complexity
jerryscript CWE-125
critical
9.8
2018-05-24 CVE-2018-11418 Out-of-bounds Read vulnerability in Jerryscript 1.0
An issue was discovered in JerryScript 1.0.
network
low complexity
jerryscript CWE-125
critical
9.8