Skip to main content

Vendor/product archive

quickjs-ng / quickjs CVEs

Beta · best-effort

7 CVEs tagged to quickjs-ng / quickjs0 Critical, 0 High, 4 Medium, 3 Low, 0 Unrated.

CVE-2026-1145

Published Jan 19, 2026

A flaw has been found in quickjs-ng quickjs up to 0.11.0. Affected by this vulnerability is the function js_typed_array_constructor_ta of the file quickjs.c. This manipulation cau…

CVSS 2.1 · Low
evidence mentions
8
Buzz score
28.5
Vendor/product tagsBeta · best-effort

CVE-2026-1144

Published Jan 19, 2026

A vulnerability was detected in quickjs-ng quickjs up to 0.11.0. Affected is an unknown function of the file quickjs.c of the component Atomics Ops Handler. The manipulation resul…

CVSS 2.1 · Low
evidence mentions
9
Buzz score
29.5
Vendor/product tagsBeta · best-effort

CVE-2026-0822

Published Jan 10, 2026

A vulnerability was identified in quickjs-ng quickjs up to 0.11.0. This issue affects the function js_typed_array_sort of the file quickjs.c. The manipulation leads to heap-based…

CVSS 2.1 · Low
evidence mentions
8
Buzz score
28.5
Vendor/product tagsBeta · best-effort

CVE-2026-0821

Published Jan 10, 2026

A vulnerability was determined in quickjs-ng quickjs up to 0.11.0. This vulnerability affects the function js_typed_array_constructor of the file quickjs.c. Executing a manipulati…

CVSS 5.5 · Medium
evidence mentions
8
Buzz score
28.5
Vendor/product tagsBeta · best-effort

CVE-2025-46687

Published Apr 27, 2025

quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13903

Published Mar 21, 2025

A vulnerability was found in quickjs-ng QuickJS up to 0.8.0. It has been declared as problematic. Affected by this vulnerability is the function JS_GetRuntime of the file quickjs.…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1