📦 Espruino

by Espruino

🔍 What is Espruino?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-19693

CRITICAL CVSS 9.8 Apr 4, 2023

This vulnerability in Espruino allows attackers to execute arbitrary code by exploiting the oldFunc parameter in the jswrap_object.c:jswrap_function_replacewith endpoint. It affects Espruino firmware ...

CVE-2020-22884

CRITICAL CVSS 9.8 Jul 13, 2021

A buffer overflow vulnerability in the jsvGetStringChars function in Espruino firmware allows remote attackers to execute arbitrary code on affected devices. This affects all systems running Espruino ...

CVE-2024-25200

HIGH CVSS 7.5 Feb 7, 2024

Espruino 2v20 contains a stack overflow vulnerability in its JavaScript parser that can be triggered via specially crafted code. This allows attackers to potentially execute arbitrary code or crash th...

CVE-2020-23257

HIGH CVSS 7.5 Apr 4, 2023

A buffer overflow vulnerability in Espruino 2v05.41 allows attackers to trigger denial of service by exploiting the jsvGarbageCollectMarkUsed function. This affects systems running vulnerable versions...

CVE-2022-25465

HIGH CVSS 7.8 Mar 5, 2022

Espruino 2v11 contains a stack buffer overflow vulnerability in the jsvGetNextSibling function in src/jsvar.c. This allows attackers to execute arbitrary code or cause denial of service by triggering ...

CVE-2021-46324

HIGH CVSS 7.8 Jan 20, 2022

Espruino 2v11.251 contains a stack buffer overflow vulnerability in the jsvNewFromString function in src/jsvar.c. This allows attackers to execute arbitrary code or cause denial of service by providin...