CVE-2020-24349
njs through 0.4.3, used in NGINX, allows control-flow hijack in njs_value_property in njs_value.c. NOTE: the vendor cons
njs through 0.4.3, used in NGINX, allows control-flow hijack in njs_value_property in njs_value.c. NOTE: the vendor considers the issue to be "fluff" in the NGINX use case because there is no remote attack surface.
MEDIUM · CVSS 5.5
EPSS 0.00057
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0