nginx-core

Direct Vulnerabilities

Known vulnerabilities in the nginx-core package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
ALAS2023-2026-2130

<1:1.30.0-1.amzn2023.0.1
  • H
Incorrect Calculation of Buffer Size

<1:1.30.4-1.amzn2023.0.1
  • H
Out-of-bounds Read

<1:1.30.4-1.amzn2023.0.1
  • H
Access of Uninitialized Pointer

<1:1.30.4-1.amzn2023.0.1
  • H
Incorrect Calculation of Buffer Size

<1:1.30.3-1.amzn2023.0.1
  • H
Out-of-bounds Read

<1:1.30.3-1.amzn2023.0.1
  • H
Heap-based Buffer Overflow

<1:1.30.2-1.amzn2023.0.1
  • H
Use of Out-of-range Pointer Offset

<1:1.30.1-1.amzn2023.0.1
  • H
HTTP Request Smuggling

<1:1.30.1-1.amzn2023.0.1
  • H
Incorrect Calculation of Buffer Size

<1:1.30.1-1.amzn2023.0.1
  • H
Buffer Over-read

<1:1.30.1-1.amzn2023.0.1
  • H
Use After Free

<1:1.30.1-1.amzn2023.0.1
  • H
Authentication Bypass

<1:1.30.1-1.amzn2023.0.1
  • H
Improper Certificate Validation

<1:1.28.3-1.amzn2023.0.1
  • H
Integer Overflow or Wraparound

<1:1.28.3-1.amzn2023.0.1
  • H
NULL Pointer Dereference

<1:1.28.3-1.amzn2023.0.1
  • H
Out-of-bounds Read

<1:1.28.3-1.amzn2023.0.1
  • H
CRLF Injection

<1:1.28.3-1.amzn2023.0.1
  • H
Buffer Overflow

<1:1.28.3-1.amzn2023.0.1
  • M
Acceptance of Extraneous Untrusted Data With Trusted Data

<1:1.28.2-1.amzn2023.0.1
  • L
Out-of-bounds Read

<1:1.28.0-1.amzn2023.0.2
  • M
Improper Authentication

<1:1.26.3-1.amzn2023.0.1
  • M
Buffer Over-read

<1:1.24.0-1.amzn2023.0.3
  • M
Improper Certificate Validation

<1:1.22.1-1.amzn2023.0.2
  • H
Resource Exhaustion

<1:1.24.0-1.amzn2023.0.2
  • M
Out-of-bounds Write

<1:1.22.1-1.amzn2023.0.2
  • M
Out-of-bounds Write

<1:1.22.1-1.amzn2023.0.2
  • M
Out-of-bounds Write

<1:1.22.1-1.amzn2023.0.3
  • M
Out-of-bounds Write

<1:1.22.1-1.amzn2023.0.3