Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2020-13623
JerryScript 2.2.0 allows attackers to cause a denial of service (stack consumption) via a proxy operation.
Jerryscript
No fix yet
CRITICAL 9.8
CVE-2019-1010176
JerryScript commit 4e58ccf68070671e1fff5cd6673f0c1d5b80b166 is affected by: Buffer Overflow. The impact is: denial of service and possibly arbitrary …
Jerryscript
2.0+
MEDIUM 6.5
CVE-2018-1000636
JerryScript version Tested on commit f86d7459d195c8ba58479d1861b0cc726c8b3793. Analysing history it seems that the issue has been present since commi…
Jerryscript
Patch available
CRITICAL 9.8
CVE-2018-11418
An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_utf8 function via a RegExp("[\\u002…
Jerryscript
No fix yet
CRITICAL 9.8
CVE-2018-11419
An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_hex function via a RegExp("[\\u0") …
Jerryscript
No fix yet
CRITICAL 9.8
CVE-2017-18212
An issue was discovered in JerryScript 1.0. There is a heap-based buffer over-read in the lit_read_code_unit_from_hex function in lit/lit-char-helper…
Jerryscript
Mitigation only
HIGH 7.8
CVE-2017-14749
JerryScript 1.0 allows remote attackers to cause a denial of service (jmem_heap_alloc_block_internal heap memory corruption) or possibly execute arbi…
Jerryscript
No fix yet
HIGH 7.5
CVE-2017-9250
The lexer_process_char_literal function in jerry-core/parser/js/js-lexer.c in JerryScript 1.0 does not skip memory allocation for empty strings, whic…
Jerryscript
Patch available