Vulnerability index

Browse CVEs

48 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Mjs HIGH 7.5
CVE-2024-35386

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_do_gc function in the mjs.c file.

No fix yet
Fix from $1,950 2024-05-21
Mjs MEDIUM 5.5
CVE-2024-35384

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_array_length function in the mjs.c file.

No fix yet
Fix from $1,600 2024-05-21
Mjs HIGH 7.5
CVE-2023-49549

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_getretvalpos function in the msj.c file.

No fix yet
Fix from $1,950 2024-01-02
Mjs HIGH 7.5
CVE-2023-49550

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs+0x4ec508 component.

No fix yet
Fix from $1,950 2024-01-02
Mjs HIGH 7.5
CVE-2023-49551

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function in the msj.c file.

No fix yet
Fix from $1,950 2024-01-02
Mjs HIGH 7.5
CVE-2023-49552

An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_stringify function in the msj.…

No fix yet
Fix from $1,950 2024-01-02
Mjs HIGH 7.5
CVE-2023-49553

An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_destroy function in the msj.c file.

No fix yet
Fix from $1,950 2024-01-02
Mjs CRITICAL 9.8
CVE-2023-43338

Cesanta mjs v2.20.0 was discovered to contain a function pointer hijacking vulnerability via the function mjs_get_ptr(). This vulnerability allows at…

No fix yet
Fix from $2,300 2023-09-23
Mongoose HIGH 8.8
CVE-2020-25887

Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file.

No fix yet
Fix from $1,950 2023-08-22
Mjs MEDIUM 5.5
CVE-2023-30087

Buffer Overflow vulnerability found in Cesanta MJS v.1.26 allows a local attacker to cause a denial of service via the mjs_mk_string function in mjs.…

No fix yet
Fix from $1,600 2023-05-09
Mjs MEDIUM 5.5
CVE-2023-30088

An issue found in Cesanta MJS v.1.26 allows a local attacker to cause a denial of service via the mjs_execute function in mjs.c.

No fix yet
Fix from $1,600 2023-05-09
Mjs MEDIUM 5.5
CVE-2023-29570

Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_ffi_cb_free at src/mjs_ffi.c. This vulnerability can lead to a Denial of S…

No fix yet
Fix from $1,600 2023-04-24
Mjs MEDIUM 5.5
CVE-2023-29569

Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via ffi_cb_impl_wpwwwww at src/mjs_ffi.c. This vulnerability can lead to a Denial …

No fix yet
Fix from $1,600 2023-04-14
Mjs MEDIUM 5.5
CVE-2023-29571

Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gc_sweep at src/mjs_gc.c. This vulnerability can lead to a Denial of Service (…

No fix yet
Fix from $1,600 2023-04-12
Mjs MEDIUM 5.5
CVE-2021-36535

Buffer Overflow vulnerability in Cesanta mJS 1.26 allows remote attackers to cause a denial of service via crafted .js file to mjs_set_errorf.

No fix yet
Fix from $1,600 2023-02-03
Mongoose Os CRITICAL 9.8
CVE-2021-27425

Cesanta Software Mongoose-OS v2.17.0 is vulnerable to integer wrap-around in function mm_malloc. This improper memory assignment can lead to arbitrar…

Mitigation only
Fix from $2,300 2022-05-03
Mjs HIGH 7.8
CVE-2021-46522

Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0xaff53.

No fix yet
Fix from $1,950 2022-01-27
Mjs HIGH 7.8
CVE-2021-46523

Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via to_json_or_debug at mjs/src/mjs_json.c.

No fix yet
Fix from $1,950 2022-01-27
Mjs HIGH 7.8
CVE-2021-46518

Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_disown at src/mjs_core.c.

No fix yet
Fix from $1,950 2022-01-27
Mjs HIGH 7.8
CVE-2021-46519

Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_array_length at src/mjs_array.c.

No fix yet
Fix from $1,950 2022-01-27
Mjs HIGH 7.8
CVE-2021-46520

Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_jprintf at src/mjs_util.c.

No fix yet
Fix from $1,950 2022-01-27
Mjs HIGH 7.8
CVE-2021-46521

Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via c_vsnprintf at mjs/src/common/str_util.c.

No fix yet
Fix from $1,950 2022-01-27
Mjs MEDIUM 5.5
CVE-2020-18392

Stack overflow vulnerability in parse_array Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36366

Stack overflow vulnerability in parse_value Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36367

Stack overflow vulnerability in parse_block Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36368

Stack overflow vulnerability in parse_statement Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36369

Stack overflow vulnerability in parse_statement_list Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted fil…

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36370

Stack overflow vulnerability in parse_unary Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36371

Stack overflow vulnerability in parse_mul_div_rem Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36372

Stack overflow vulnerability in parse_plus_minus Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28