Show filters
48 Total Results
Displaying 1-10 of 48
Sort by:
Attacker Value
Unknown
CVE-2023-27730
Disclosure Date: April 09, 2023 (last updated October 08, 2023)
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_lvlhsh_find at src/njs_lvlhsh.c.
0
Attacker Value
Unknown
CVE-2023-27729
Disclosure Date: April 09, 2023 (last updated October 08, 2023)
Nginx NJS v0.7.10 was discovered to contain an illegal memcpy via the function njs_vmcode_return at src/njs_vmcode.c.
0
Attacker Value
Unknown
CVE-2023-27728
Disclosure Date: April 09, 2023 (last updated October 08, 2023)
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_dump_is_recursive at src/njs_vmcode.c.
0
Attacker Value
Unknown
CVE-2023-27727
Disclosure Date: April 09, 2023 (last updated October 08, 2023)
Nginx NJS v0.7.10 was discovered to contain a segmentation violation via the function njs_function_frame at src/njs_function.h.
0
Attacker Value
Unknown
CVE-2020-19695
Disclosure Date: April 04, 2023 (last updated October 08, 2023)
Buffer Overflow found in Nginx NJS allows a remote attacker to execute arbitrary code via the njs_object_property parameter of the njs/njs_vm.c function.
0
Attacker Value
Unknown
CVE-2020-19692
Disclosure Date: April 04, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerabilty found in Nginx NJS v.0feca92 allows a remote attacker to execute arbitrary code via the njs_module_read in the njs_module.c file.
0
Attacker Value
Unknown
CVE-2023-0075
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
The Amazon JS WordPress plugin through 0.10 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
0
Attacker Value
Unknown
CVE-2022-43284
Disclosure Date: October 28, 2022 (last updated November 08, 2023)
Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njs_scope_valid_value at njs_scope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
0
Attacker Value
Unknown
CVE-2022-43286
Disclosure Date: October 28, 2022 (last updated December 22, 2024)
Nginx NJS v0.7.2 was discovered to contain a heap-use-after-free bug caused by illegal memory copy in the function njs_json_parse_iterator_call at njs_json.c.
0
Attacker Value
Unknown
CVE-2022-43285
Disclosure Date: October 28, 2022 (last updated November 08, 2023)
Nginx NJS v0.7.4 was discovered to contain a segmentation violation in njs_promise_reaction_job. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
0