{"id":"CVE-2024-35384","details":"An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_array_length function in the mjs.c file.","modified":"2026-03-14T12:33:58.890121Z","published":"2024-05-21T14:15:12.217Z","references":[{"type":"REPORT","url":"https://github.com/cesanta/mjs/issues/287"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/cesanta/mjs","events":[{"introduced":"0"},{"last_affected":"b1b6eac6b1e5b830a5cb14f8f4dc690ef3162551"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"2.20.0"}]}}],"versions":["1.10","1.11","1.12","1.13","1.14","1.15","1.16","1.17","1.18","1.19","1.19.1","1.19.2","1.19.3","1.19.4","1.19.5","1.19.6","1.20","1.20.1","1.21","1.22","1.22.1","1.23","1.24","1.25","1.26","1.5","1.6","1.7","1.8","1.9","2.0","2.1","2.10.0","2.10.1","2.10.2","2.11.0","2.12.0","2.12.1","2.13.0","2.13.1","2.14.0","2.15.0","2.16.0","2.17.0","2.18.0","2.19.0","2.19.1","2.2","2.20.0","2.3","2.4","2.4.1","2.4.2","2.4.3","2.5","2.5.1","2.6.0","2.7.0","2.7.1","2.8.0","2.8.1","2.9.0","ddd"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-35384.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L"}]}