chakracore vulnerabilities
CVEs whose affected-version data names the chakracore package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2020-1065Medium· 4.2A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of …
▾ Sunlitmicrosoft · chakracoreEPSS 2.2%via NVD
CVE-2020-1037Medium· 4.2A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based)
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based). The vulnerability could corrupt memory in such a way that an attacker could execute arbitr…
▾ Sunlitmicrosoft · edgeEPSS 2.2%via NVD