Vulnerability index

Browse CVEs

98 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Jerryscript HIGH 7.5
CVE-2020-13623

JerryScript 2.2.0 allows attackers to cause a denial of service (stack consumption) via a proxy operation.

No fix yet
Fix from $1,950 2020-05-27
Jerryscript CRITICAL 9.8
CVE-2019-1010176

JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow. The impact is: denial of service and possibly arbitrary …

Fix: 2.0+
Fix from $2,300 2019-07-25
Jerryscript MEDIUM 6.5
CVE-2018-1000636

JerryScript version Tested on commit f86d7459d195c8ba58479d1861b0cc726c8b3793. Analysing history it seems that the issue has been present since commi…

Patch available
Fix from $1,600 2018-08-20
Jerryscript CRITICAL 9.8
CVE-2018-11418

An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_utf8 function via a RegExp("[\\u002…

No fix yet
Fix from $2,300 2018-05-24
Jerryscript CRITICAL 9.8
CVE-2018-11419

An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_hex function via a RegExp("[\\u0") …

No fix yet
Fix from $2,300 2018-05-24
Jerryscript CRITICAL 9.8
CVE-2017-18212

An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_hex function in lit/lit-char-helper…

Mitigation only
Fix from $2,300 2018-03-01
Jerryscript HIGH 7.8
CVE-2017-14749

JerryScript 1.0 allows remote attackers to cause a denial of service (jmem_heap_alloc_block_internal heap memory corruption) or possibly execute arbi…

No fix yet
Fix from $1,950 2017-09-26
Jerryscript HIGH 7.5
CVE-2017-9250

The lexer_process_char_literal function in jerry-core/parser/js/js-lexer.c in JerryScript 1.0 does not skip memory allocation for empty strings, whic…

Patch available
Fix from $1,950 2017-05-28