Lucene search

K
cvelistMitreCVELIST:CVE-2020-36309
HistoryApr 06, 2021 - 5:32 p.m.

CVE-2020-36309

2021-04-0617:32:45
mitre
www.cve.org
7
openresty
unsafe characters
uri
ngx_http_lua_module
api

AI Score

6

Confidence

High

EPSS

0.001

Percentile

40.3%

ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or a request or response header.

AI Score

6

Confidence

High

EPSS

0.001

Percentile

40.3%