VYPR
Critical severity9.8NVD Advisory· Published Apr 14, 2022· Updated Jun 17, 2026

CVE-2022-27007

CVE-2022-27007

Description

nginx njs 0.7.2 is affected suffers from Use-after-free in njs_function_frame_alloc() when it try to invoke from a restored frame saved with njs_function_frame_save().

Affected products

2
  • Nginx/Njsllm-fuzzy2 versions
    <0.7.2+ 1 more
    • (no CPE)range: <0.7.2
    • (no CPE)

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.