CVE-2020-19693: Espruino

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

An issue found in Espruino Espruino 6ea4c0a allows an attacker to execute arbitrrary code via oldFunc parameter of the jswrap_object.c:jswrap_function_replacewith endpoint.

Affected products

  • Espruino Espruino: version 2019-06-28 only

Published 2023-04-04. Last modified 2026-06-17.