A vulnerability classified as critical has been found in QuickJS up to eb2c89087def1829ed99630cb14b549d7a98408c. This affects the function js_array_buffer_slice of the file quickjs.c. This manipulation causes heap-based buffer overflow.

This vulnerability is tracked as CVE-2025-12745. The attack is restricted to local execution. Moreover, an exploit is present.

This product adopts a rolling release strategy to maintain continuous delivery To fix this issue, it is recommended to deploy a patch.