Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

josdejong — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting josdejong. AI-powered Chinese analysis, POCs, and references for each vulnerability.

josdejong develops JavaScript libraries for data manipulation and visualization, with a core use case enabling interactive web applications. Historically, vulnerabilities have included cross-site scripting (XSS) and remote code execution (RCE) flaws, often stemming from improper input validation or insecure deserialization. Notable characteristics include regular security updates and a responsive disclosure process, though three CVEs on record highlight persistent risks in data parsing functions. The project maintains transparent reporting practices, with incidents typically resolved within weeks of disclosure. Security remains a priority, with ongoing efforts to sanitize inputs and implement stricter parsing mechanisms to prevent exploitation.

Found 2 results / 3 Clear Filters
Top products by josdejong: mathjs josdejong/jsoneditor
CVE ID Title CVSS Severity Published
CVE-2026-41139 Unsafe array index getter in mathjs — mathjs CWE-915 6.1 - 2026-05-07
CVE-2026-40897 Math.js: Unsafe object property setter in mathjs — mathjs CWE-915 8.8 High 2026-04-24

This page lists every published CVE security advisory associated with josdejong. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.