Critical severity9.8NVD Advisory· Published Dec 13, 2021· Updated Jun 17, 2026
CVE-2021-24045
CVE-2021-24045
Description
A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in Facebook Hermes prior to v0.10.0. Note that this is only exploitable if the application using Hermes permits evaluation of untrusted JavaScript. Hence, most React Native applications are not affected.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Facebook/Hermesv5Range: unspecified
Patches
Vulnerability mechanics
References
2- github.com/facebook/hermes/commit/55e1b2343f4deb1a1b5726cfe1e23b2068217ff2nvdPatchThird Party Advisory
- www.facebook.com/security/advisories/cve-2021-24045nvdVendor Advisory
News mentions
0No linked articles in our index yet.