AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-27810

HIGH · CVSS 7.5 EPSS 0.76%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-10-06 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-27810
Severity
HIGH
CVSS
7.5
EPSS
0.76%
Java

Original NVD Description

It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (when asserts were enabled). This issue affects Hermes versions prior to v0.12.0.