High-severity NGINX vulnerability has been exploited

robot
Abstract generation in progress

ME News Report, May 17 (UTC+8), a critical vulnerability in NGINX CVE-2026-42945 has been exploited by hackers. This vulnerability affects NGINX Open Source and NGINX Plus versions 0.6.27 to 1.30.0, which can cause worker process crashes and enable remote code execution (RCE) when ASLR protection is disabled. Ledger’s Chief Technology Officer Charles Guillemet stated that currently, no more than 30% of servers are running the latest version of NGINX, and the spread of the vulnerability is outpacing IT teams’ patching and upgrade efforts. (Source: MLion)

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned