ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36309”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36309
Published
2021-04-06
CVSS:
5.3
ShadowTrackr CVSS:
1.7
Summary:
ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or a request or response header.