Quickjs-ng

Quickjs

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.07%
  • Veröffentlicht 19.01.2026 08:02:08
  • Zuletzt bearbeitet 30.01.2026 14:59:15

A flaw has been found in quickjs-ng quickjs up to 0.11.0. Affected by this vulnerability is the function js_typed_array_constructor_ta of the file quickjs.c. This manipulation causes heap-based buffer overflow. The attack is possible to be carried ou...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 19.01.2026 07:32:10
  • Zuletzt bearbeitet 30.01.2026 15:00:38

A vulnerability was detected in quickjs-ng quickjs up to 0.11.0. Affected is an unknown function of the file quickjs.c of the component Atomics Ops Handler. The manipulation results in use after free. The attack can be executed remotely. The exploit ...

Exploit
  • EPSS 0.07%
  • Veröffentlicht 10.01.2026 13:32:08
  • Zuletzt bearbeitet 22.01.2026 20:58:16

A vulnerability was identified in quickjs-ng quickjs up to 0.11.0. This issue affects the function js_typed_array_sort of the file quickjs.c. The manipulation leads to heap-based buffer overflow. Remote exploitation of the attack is possible. The exp...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 10.01.2026 13:15:49
  • Zuletzt bearbeitet 15.01.2026 22:22:36

A vulnerability was determined in quickjs-ng quickjs up to 0.11.0. This vulnerability affects the function js_typed_array_constructor of the file quickjs.c. Executing a manipulation can lead to heap-based buffer overflow. The attack may be launched r...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 27.04.2025 00:00:00
  • Zuletzt bearbeitet 14.01.2026 17:30:17

quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.

Exploit
  • EPSS 0.03%
  • Veröffentlicht 27.04.2025 00:00:00
  • Zuletzt bearbeitet 30.05.2025 16:29:54

quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.

Exploit
  • EPSS 0.64%
  • Veröffentlicht 21.03.2025 07:15:34
  • Zuletzt bearbeitet 24.03.2025 14:36:07

A vulnerability was found in quickjs-ng QuickJS up to 0.8.0. It has been declared as problematic. Affected by this vulnerability is the function JS_GetRuntime of the file quickjs.c of the component qjs. The manipulation leads to stack-based buffer ov...