Vulnerability Details CVE-2022-43284
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.5%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-43284
-
F5
»
Njs
»
Version: 0.7.2
-
F5
»
Njs
»
Version: 0.7.3
-
F5
»
Njs
»
Version: 0.7.4