GHSA-8v2h-4jpm-3wfm
GitHub Security Advisory
ChakraCore RCE Vulnerability
✓ GitHub Reviewed
CRITICAL
Has CVE
Advisory Details
A remote code execution vulnerability exists in the way that the Chakra JavaScript engine renders when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability".
Affected Packages
NuGet
Microsoft.ChakraCore
Affected versions:
0
(fixed in 1.6.1)
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: June 18, 2025 6:25 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.