CVE-2023-27730
- EPSS 0.06%
- Published 09.04.2023 20:15:56
- Last modified 11.02.2025 22:15:26
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_lvlhsh_find at src/njs_lvlhsh.c.
CVE-2023-27729
- EPSS 0.08%
- Published 09.04.2023 20:15:56
- Last modified 12.02.2025 16:15:37
Nginx NJS v0.7.10 was discovered to contain an illegal memcpy via the function njs_vmcode_return at src/njs_vmcode.c.
CVE-2023-27728
- EPSS 0.06%
- Published 09.04.2023 20:15:56
- Last modified 11.02.2025 20:15:32
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_dump_is_recursive at src/njs_vmcode.c.
CVE-2023-27727
- EPSS 0.06%
- Published 09.04.2023 20:15:56
- Last modified 12.02.2025 16:15:37
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_function_frame at src/njs_function.h.
CVE-2020-19695
- EPSS 0.94%
- Published 04.04.2023 15:15:07
- Last modified 12.08.2025 18:09:57
Buffer Overflow found in Nginx NJS allows a remote attacker to execute arbitrary code via the njs_object_property parameter of the njs/njs_vm.c function.
CVE-2020-19692
- EPSS 0.87%
- Published 04.04.2023 15:15:07
- Last modified 12.08.2025 17:56:57
Buffer Overflow vulnerabilty found in Nginx NJS v.0feca92 allows a remote attacker to execute arbitrary code via the njs_module_read in the njs_module.c file.
CVE-2022-43286
- EPSS 0.1%
- Published 28.10.2022 21:15:10
- Last modified 07.05.2025 14:15:37
Nginx NJS v0.7.2 was discovered to contain a heap-use-after-free bug caused by illegal memory copy in the function njs_json_parse_iterator_call at njs_json.c.
CVE-2022-43285
- EPSS 0.08%
- Published 28.10.2022 21:15:10
- Last modified 07.05.2025 14:15:37
Nginx NJS v0.7.4 was discovered to contain a segmentation violation in njs_promise_reaction_job. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
CVE-2022-43284
- EPSS 0.07%
- Published 28.10.2022 21:15:10
- Last modified 21.11.2024 07:26:12
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
CVE-2022-38890
- EPSS 0.04%
- Published 15.09.2022 16:15:10
- Last modified 21.11.2024 07:17:14
Nginx NJS v0.7.7 was discovered to contain a segmentation violation via njs_utf8_next at src/njs_utf8.h