AI Score
Confidence
Low
EPSS
Percentile
26.0%
njs through 0.4.3, used in NGINX, allows control-flow hijack in njs_value_property in njs_value.c. NOTE: the vendor considers the issue to be “fluff” in the NGINX use case because there is no remote attack surface.
cwe.mitre.org/data/definitions/416.html
github.com/nginx/njs/issues/324
security.netapp.com/advisory/ntap-20200918-0001/