0.003 Low
EPSS
Percentile
70.1%
njs is vulnerable to privilege escalation. The vulnerability exists in njs_promise_perform_then function due to a type confusion which allows an attacker to gain access to the system and perform unauthorized actions.
njs_promise_perform_then
github.com/nginx/njs/commit/6a40a85ff239497c6458c7dbef18f6a2736fe992
github.com/nginx/njs/issues/447
secdb.alpinelinux.org/edge/community.yaml
secdb.alpinelinux.org/edge/main.yaml
secdb.alpinelinux.org/v3.15/community.yaml
security.netapp.com/advisory/ntap-20220303-0007/