Back to Database
Status published
High
CVE-2020-23260
An issue found in Jsish v.3.0.11 and before allows an...
Vulnerability Description
An issue found in Jsish v.3.0.11 and before allows an attacker to cause a denial of service via the StringReplaceCmd function in the src/jsiChar.c file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-23260
Credits & Attribution
No credits recorded in the NVD database.
References
More from jsish
View All →CVE-2021-46507
Jsish v3.5.0 was discovered to contain a stack overflow via...
Medium
5.5
CVE-2021-46506
There is an Assertion 'v->d.lval != v' failed at src/jsiValue.c...
Medium
5.5
CVE-2021-46505
Jsish v3.5.0 was discovered to contain a stack overflow via...
Medium
5.5
CVE-2021-46504
There is an Assertion 'vp != resPtr' failed at jsiEval.c...
Medium
5.5
CVE-2021-46503
Jsish v3.5.0 was discovered to contain a heap-use-after-free via /usr/lib/x86_64-linux-gnu/libasan.so.4+0x79732....
Medium
5.5
Affected Vendor
jsish
View all reports →Affected Software
jsish
Vulnerable Versions:
0
Timeline
Official Publish:
April 4th, 2023
Last Modified:
February 18th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.