Lucene search

K

Chakracore Security Vulnerabilities

cve
cve

CVE-2020-0970

A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0968.

7.5CVSS

8AI Score

0.389EPSS

2020-04-15 03:15 PM
72
In Wild
cve
cve

CVE-2020-1037

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based), aka 'Chakra Scripting Engine Memory Corruption Vulnerability'.

7.5CVSS

8AI Score

0.017EPSS

2020-05-21 11:15 PM
54
cve
cve

CVE-2020-1057

<p>A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited th...

4.2CVSS

6.5AI Score

0.005EPSS

2020-09-11 05:15 PM
107
cve
cve

CVE-2020-1065

A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'.

7.5CVSS

7.6AI Score

0.017EPSS

2020-05-21 11:15 PM
63
cve
cve

CVE-2020-1073

A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'.

8.1CVSS

7.9AI Score

0.02EPSS

2020-06-09 08:15 PM
81
cve
cve

CVE-2020-1172

<p>A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited th...

4.2CVSS

6.5AI Score

0.005EPSS

2020-09-11 05:15 PM
116
cve
cve

CVE-2020-1180

<p>A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited th...

4.2CVSS

6.5AI Score

0.005EPSS

2020-09-11 05:15 PM
91
cve
cve

CVE-2020-1219

A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'.

7.5CVSS

8.1AI Score

0.017EPSS

2020-06-09 08:15 PM
81
cve
cve

CVE-2020-1555

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based). The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successf...

8.8CVSS

7.9AI Score

0.108EPSS

2020-08-17 07:15 PM
106
In Wild
cve
cve

CVE-2020-17048

Chakra Scripting Engine Memory Corruption Vulnerability

4.2CVSS

5.4AI Score

0.003EPSS

2020-11-11 07:15 AM
91
cve
cve

CVE-2020-17054

Chakra Scripting Engine Memory Corruption Vulnerability

4.2CVSS

5.4AI Score

0.06EPSS

2020-11-11 07:15 AM
98
cve
cve

CVE-2020-17131

Chakra Scripting Engine Memory Corruption Vulnerability

4.2CVSS

4.4AI Score

0.003EPSS

2020-12-10 12:15 AM
106
2
cve
cve

CVE-2020-23315

There is an ASSERTION (pFuncBody-&gt;GetYieldRegister() == oldYieldRegister) failed in Js::DebugContext::RundownSourcesAndReparse in ChakraCore version 1.12.0.0-beta.

7.5CVSS

7.5AI Score

0.001EPSS

2022-01-20 10:15 PM
26
cve
cve

CVE-2023-37139

ChakraCore branch master cbb9b was discovered to contain a stack overflow vulnerability via the function Js::ScopeSlots::IsDebuggerScopeSlotArray().

5.5CVSS

5.7AI Score

0.001EPSS

2023-07-18 08:15 PM
13
cve
cve

CVE-2023-37140

ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::DiagScopeVariablesWalker::GetChildrenCount().

5.5CVSS

5.5AI Score

0.001EPSS

2023-07-18 08:15 PM
15
cve
cve

CVE-2023-37141

ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::ProfilingHelpers::ProfiledNewScArray().

5.5CVSS

5.5AI Score

0.001EPSS

2023-07-18 08:15 PM
11
cve
cve

CVE-2023-37142

ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::EntryPointInfo::HasInlinees().

5.5CVSS

5.5AI Score

0.001EPSS

2023-07-18 08:15 PM
17
cve
cve

CVE-2023-37143

ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function BackwardPass::IsEmptyLoopAfterMemOp().

5.5CVSS

5.5AI Score

0.001EPSS

2023-07-18 08:15 PM
11
Total number of security vulnerabilities268