CVE-2023-36109

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
2
PROJECTS

Description

Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.

Ultra-lightweight JavaScript engine for the Internet of Things.
GitHubGitHub
7.39K
a poc for cve-2023-36109
GitHubGitHub
2