Vulnerabilities (CVE)

Filtered by vendor Nginx Subscribe
Filtered by product Njs
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-46462 1 Nginx 1 Njs 2022-02-22 5.0 MEDIUM 7.5 HIGH
njs through 0.7.1, used in NGINX, was discovered to contain a segmentation violation via njs_object_set_prototype in /src/njs_object.c.
CVE-2020-24346 1 Nginx 1 Njs 2020-09-18 6.8 MEDIUM 7.8 HIGH
njs through 0.4.3, used in NGINX, has a use-after-free in njs_json_parse_iterator_call in njs_json.c.
CVE-2019-11837 1 Nginx 1 Njs 2019-05-09 5.0 MEDIUM 7.5 HIGH
njs through 0.3.1, used in NGINX, has a segmentation fault in String.prototype.toBytes for negative arguments, related to nxt_utf8_next in nxt/nxt_utf8.h and njs_string_offset in njs/njs_string.c.