CVE-2022-27810

7.5HIGH

It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (wh

发布于: 10/6/2022更新于: 11/21/2024

描述

It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (when asserts were enabled). This issue affects Hermes versions prior to v0.12.0.

AI分析AI驱动

受影响产品

facebookhermes

参考资料