F5 NGINX JavaScript

3 known vulnerabilities in F5 NGINX JavaScript, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-78689 CVSS 9.2 critical Description NGINX JavaScript (njs) has a vulnerability in the XML module's namespace prefix list parser, reachable through the…
  • CVE-2026-78222 CVSS 8.7 high A vulnerability exists in NGINX JavaScript where a malformed HTTP response received by ngx.fetch() can crash an NGINX worker when trusted…
  • CVE-2026-18329 CVSS 8.8 high Description NGINX JavaScript (njs) and QuickJS (qjs) engines have a vulnerability when a js_access handler performs asynchronous request…