Vulnerabilities
Vulnerable Software
F5:  >> Njs  >> 0.7.2  Security Vulnerabilities
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-10-28
Nginx NJS v0.7.2 was discovered to contain a heap-use-after-free bug caused by illegal memory copy in the function njs_json_parse_iterator_call at njs_json.c.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-10-28
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_convert_to_slow_array at src/njs_array.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-06-21
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_string_offset at src/njs_string.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2022-06-21
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_vmcode_interpreter at src/njs_vmcode.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-06-21
Nginx NJS v0.7.2 was discovered to contain a segmentation violation via njs_lvlhsh_bucket_find at njs_lvlhsh.c.
CVSS Score
7.5
EPSS Score
0.004
Published
2022-05-12
NGINX NJS 0.7.2 was discovered to contain a NULL pointer dereference via the component njs_vmcode_array at /src/njs_vmcode.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2022-04-15
nginx njs 0.7.2 is affected suffers from Use-after-free in njs_function_frame_alloc() when it try to invoke from a restored frame saved with njs_function_frame_save().
CVSS Score
9.8
EPSS Score
0.004
Published
2022-04-14
nginx njs 0.7.2 is vulnerable to Buffer Overflow. Type confused in Array.prototype.concat() when a slow array appended element is fast array.
CVSS Score
7.5
EPSS Score
0.004
Published
2022-04-14


Contact Us

Shodan ® - All rights reserved