CVE-2023-43338: Cesanta Mjs
Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.
Cesanta mjs v2.20.0 was discovered to contain a function pointer hijacking vulnerability via the function mjs_get_ptr(). This vulnerability allows attackers to execute arbitrary code via a crafted input.
Affected products
- Cesanta Mjs: version 2.20.0 only
Published 2023-09-23. Last modified 2026-06-17.