A heap overflow in Sqreen PyMiniRacer (aka Python Mini Racer) before 0.3.0 allows remote attackers to potentially exploit heap corruption.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25489
Reference (s):
- https://blog.sqreen.com/vulnerability-disclosure-finding-a-vulnerability-in-sqreens-php-agent-and-how-we-fixed-it/
- https://github.com/sqreen/PyMiniRacer/compare/v0.2.0 v0.3.0

