cve/2025/CVE-2025-46687.md
2025-09-29 21:09:30 +02:00

705 B

CVE-2025-46687

Description

quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.

POC

Reference

No PoCs from references.

Github