VYPR
Medium severity4.8NVD Advisory· Published Apr 23, 2020· Updated Jun 17, 2026

CVE-2020-5865

CVE-2020-5865

Description

In versions prior to 3.3.0, the NGINX Controller is configured to communicate with its Postgres database server over unencrypted channels, making the communicated data vulnerable to interception via man-in-the-middle (MiTM) attacks.

Affected products

2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.