Security Advisory
CVE-2020-5910
7.5
HIGH
Vulnerability Description
In versions 3.0.0-3.5.0, 2.0.0-2.9.0, and 1.0.1, the Neural Autonomic Transport System (NATS) messaging services in use by the NGINX Controller do not require any form of authentication, so any successful connection would be authorized.
Published Date
July 2, 2020
Official Source
NIST NVD Advisory