ChakraCore icon indicating copy to clipboard operation
ChakraCore copied to clipboard

ChakraCore is an open source Javascript engine with a C API.

Results 240 ChakraCore issues
Sort by recently updated
recently updated
newest added

PoC: ```javascript function main() { const v3 = async (v4,v5,v6,v7) => { }; const v10 = [13.37]; const v11 = {__proto__:v10,e:"e",valueOf:v3}; for (let v14 = v11; v14 < 1337; v14...

Bug
Severity: 2

PoC: ```javascript function main() { const v0 = {}; async function v1(v2,v3,v4,v5,v6) { const v7 = ` Object; `; for (let v9 in v0) { const v10 = v9++; const...

Bug
Severity: 2

PoC: ```javascript function main() { do { function v2(v3,v4,v5,v6,v7) { const v15 = [13.37,13.37,13.37,13.37]; const v16 = v15[13.37]; const v17 = eval(1,..."ignoreCase",v16,..."pS1LFZI9uc",1); } const v19 = [13.37,13.37,13.37,13.37,13.37]; const v20 =...

Duplicate
Bug

PoC: ```javascript function main() { do { delete isNaN.length; const v4 = Object.getOwnPropertyNames(isNaN); } while (16 < 1337); } main(); // STDERR: // ASSERTION 12205: (/src/chakracore/lib/Runtime/Types/SimpleTypeHandler.cpp, line 664) !GetIsLocked() //...

Bug
Severity: 2

PoC: ```javascript function main() { const v2 = Array(4294967295); const v3 = v2.copyWithin(); } main(); ``` backtrace: ``` * thread #1, queue = 'com.apple.main-thread', stop reason = EXC_BAD_INSTRUCTION (code=EXC_I386_INVOP, subcode=0x0)...

Bug
Severity: 3

PoC: ```javascript function main() { try { const v1 = BigInt(); } catch(v2) { } const v3 = async (v4,v5,v6) => { for (const v8 in "pS1LFZI9uc") { const v10...

Bug
Severity: 1

poc: ```c function main() { for (let v3 = -2; v3 < 1337; v3 = v3 + 0) { const v4 = v3++; } } main(); ``` backtrace is: ```...

Bug
Severity: 2

# enviroment ubuntu 18 # poc ``` try { (function TestFunc() { var a; (function outer() { (function inner() { var WHYG = ijjkkk; a; }()); var obj = {...

Bug
Severity: 2

# enviroment ubuntu 18 # poc ``` function opt(index) { var flag = 0; var tmp = new String('aa'); tmp.x = 2; var i = 0; function test() { testDate('0001-10-13T05:16:33Z');...

Bug