Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Im-Razvan

#19829of 53,608
13.1Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-24918
5.3
2026-03-12
Git · Quickjs · CVE-2026-3979
**Name of the Vulnerable Software and Affected Versions** quickjs-ng quickjs versions through 0.12.1 **Description** An issue exists in quickjs-ng quickjs up to version 0.12.1, specifically within the `js iterator concat return` function located in the `quickjs.c` file. This manipulation leads to a use-after-free condition. Exploitation requires local access. The exploit has been published and is potentially available for use. The vulnerable function is `js iterator concat return`. **Recommendations** quickjs-ng quickjs versions through 0.12.1: Apply the patch daab4ad4bae4ef071ed0294618d6244e92def4cd to resolve this issue.
PT-2025-45149
7.8
2025-11-05
Quickjs · Quickjs · CVE-2025-12745
**Name of the Vulnerable Software and Affected Versions** QuickJS versions prior to eb2c89087def1829ed99630cb14b549d7a98408c **Description** A flaw exists in QuickJS that allows for a buffer over-read. This issue is related to the `js array buffer slice` function within the `quickjs.c` file. Exploitation is limited to local execution. The exploit code has been publicly released. **Recommendations** Deploy patch c6fe5a98fd3ef3b7064e6e0145dfebfe12449fea.