Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-33993 Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to version 3.0.25, the `unserialize()` function i… Locutus 3.0.25+ Fix from $2,3002026-03-27 CRITICAL 9.8 CVE-2026-33994 Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39 and prior to version 3.0.25,… Locutus 3.0.25+ Fix from $2,3002026-03-27 CRITICAL 9.8 CVE-2026-32304 Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to 3.0.14, the create_function(args, code) functi… Locutus 3.0.14+ Fix from $2,3002026-03-13 HIGH 8.1 CVE-2026-29091 Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to version 3.0.0, a remote code execution (RCE) f… Locutus 3.0.0+ Fix from $1,9502026-03-06 HIGH 8.8 CVE-2026-25521 Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. In versions from 2.0.12 to before 2.0.39, a prototype p… Locutus 2.0.39+ Fix from $1,9502026-02-04 HIGH 7.5 CVE-2021-23392 The package locutus before 2.0.15 are vulnerable to Regular Expression Denial of Service (ReDoS) via the gopher_parsedir function. Locutus 2.0.15+ Fix from $1,9502021-06-08 CRITICAL 9.8 CVE-2020-7719 Versions of package locutus before 2.0.12 are vulnerable to prototype Pollution via the php.strings.parse_str function. Locutus 2.0.12+ Fix from $2,3002020-09-01 CRITICAL 9.8 CVE-2020-13619 php/exec/escapeshellarg in Locutus PHP through 2.0.11 allows an attacker to achieve code execution. Locutus Php after 2.0.11 Fix from $2,3002020-07-01