Vulnerabilities > Moddable > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-12-04 CVE-2020-25462 Out-of-bounds Write vulnerability in Moddable
Heap buffer overflow in the fxCheckArrowFunction function at moddable/xs/sources/xsSyntaxical.c:3562 in Moddable SDK before OS200903.
network
low complexity
moddable CWE-787
critical
9.8
2019-09-16 CVE-2019-16366 Out-of-bounds Write vulnerability in Moddable and XS
In XS 9.0.0 in Moddable SDK OS180329, there is a heap-based buffer overflow in fxBeginHost in xsAPI.c when called from fxRunDefine in xsRun.c, as demonstrated by crafted JavaScript code to xst.
network
low complexity
moddable CWE-787
critical
9.8