CVE-2026-2242
Severity CVSS v4.0:
MEDIUM
Type:
CWE-119
Buffer Errors
Publication date:
09/02/2026
Last modified:
09/02/2026
Description
A vulnerability was determined in janet-lang janet up to 1.40.1. This impacts the function janetc_if of the file src/core/specials.c. Executing a manipulation can lead to out-of-bounds read. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. This patch is called c43e06672cd9dacf2122c99f362120a17c34b391. It is advisable to implement a patch to correct this issue.
Impact
Base Score 4.0
4.80
Severity 4.0
MEDIUM
Base Score 3.x
3.30
Severity 3.x
LOW
Base Score 2.0
1.70
Severity 2.0
LOW
References to Advisories, Solutions, and Tools
- https://github.com/janet-lang/janet/
- https://github.com/janet-lang/janet/commit/c43e06672cd9dacf2122c99f362120a17c34b391
- https://github.com/janet-lang/janet/issues/1700
- https://github.com/janet-lang/janet/issues/1702
- https://github.com/oneafter/0123/blob/main/ja2/repro
- https://vuldb.com/?ctiid_344981=
- https://vuldb.com/?id_344981=
- https://vuldb.com/?submit_754495=



