Vulnerability Details CVE-2022-43284
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.4%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-43284
-
F5
»
Njs
»
Version: 0.7.2
-
F5
»
Njs
»
Version: 0.7.3
-
F5
»
Njs
»
Version: 0.7.4