Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Alvin Ng

#29653of 53,635
8.8Total CVSS
Vulnerabilities · 1
PT-2022-27312
8.8
2022-11-23
Artifex · Artifex Mujs · CVE-2022-44789
**Name of the Vulnerable Software and Affected Versions** Artifex MuJS versions 1.0.0 through 1.3.1 **Description** A logical issue in the `O getOwnPropertyDescriptor()` function allows an attacker to achieve Remote Code Execution through memory corruption, via the loading of a crafted JavaScript file. **Recommendations** For Artifex MuJS versions 1.0.0 through 1.3.1, update to version 1.3.2 or later to resolve the issue. As a temporary workaround, consider restricting the loading of external JavaScript files to minimize the risk of exploitation.