| Product | Branch | Versions known to be vulnerable1 | Fixes introduced in | Severity/CVSS score2 | Vulnerable component or feature |
| NGINX Plus | 37.x | 37.0.0.1 - 37.0.2.1 | 37.0.3.1 | High/8.1 (CVSS v3.1)
Critical/9.2 (CVSS v4.0) | The map directive with regex matching |
| Rx | R33 - R36 | R36 P7 |
| NGINX Open Source | 1.x | 1.31.2
1.30.0 - 1.30.3 | 1.31.3
1.30.4 | High/8.1 (CVSS v3.1)
Critical/9.2 (CVSS v4.0) | The map directive with regex matching |