← العودة للجدول
CVE-2025-47154
CVE-2025-47154 — LibJS in Ladybird before f5a6704 mishandles the freeing of the vector that argum
📅 2025-05-01
🔴 Critical 🔥 No NVD Exploit Vulnerability CVSS 9 🎯 EPSS 1.15%

📋 الوصف الكامل

LibJS in Ladybird before f5a6704 mishandles the freeing of the vector that arguments_list references, leading to a use-after-free, and allowing remote attackers to execute arbitrary code via a crafted .js file. NOTE: the GitHub README says "Ladybird is in a pre-alpha state, and only suitable for use by developers."

💻 الأنظمة المتأثرة

LibJS in Ladybird

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2025-47154

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2025-47154 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←