The Lemmy Club
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Eager Eagle@lemmy.world to Selfhosted@lemmy.worldEnglish ·
edit-2
1 month ago

18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE

thehackernews.com

external-link
message-square
15
link
fedilink
  • cross-posted to:
  • cybersecurity@sh.itjust.works
  • cybersecurity@sh.itjust.works
118
external-link

18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE

thehackernews.com

Eager Eagle@lemmy.world to Selfhosted@lemmy.worldEnglish ·
edit-2
1 month ago
message-square
15
link
fedilink
  • cross-posted to:
  • cybersecurity@sh.itjust.works
  • cybersecurity@sh.itjust.works
NGINX Rift CVE-2026-42945 scores 9.2 after 18 years, enabling unauthenticated RCE or DoS via crafted HTTP requests.

Update your nginx instances

cross-posted from: https://lemmy.world/post/46851448

  • Affected an non-affected versions https://nginx.org/en/security_advisories.html
  • CVE record https://www.cve.org/CVERecord?id=CVE-2026-42945
  • CVE details https://nvd.nist.gov/vuln/detail/CVE-2026-42945
  • PoC https://github.com/DepthFirstDisclosures/Nginx-Rift

CVE - Common Vulnerabilities and Exposures system
RCE - Remote Code Execution
PoC - Proof of Concept

  • Eager Eagle@lemmy.worldOP
    link
    fedilink
    English
    arrow-up
    1
    ·
    30 days ago

    good to know!

Selfhosted@lemmy.world

selfhosted@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !selfhosted@lemmy.world

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam.

  3. Posts here are to be centered around self-hosting. Please ensure it is clear in your post how it relates to self-hosting.

  4. Don’t duplicate the full text of your blog or git here. Just post the link for folks to click.

  5. Submission headline should match the article title.

  6. No trolling.

Resources:

  • selfh.st Newsletter and index of selfhosted software and apps
  • awesome-selfhosted software
  • awesome-sysadmin resources
  • Self-Hosted Podcast from Jupiter Broadcasting

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 297 users / day
  • 2.82K users / week
  • 7.92K users / month
  • 16.3K users / 6 months
  • 143 local subscribers
  • 59.9K subscribers
  • 6.38K Posts
  • 158K Comments
  • Modlog
  • mods:
  • Ruud@lemmy.world
  • Loki@lemmy.world
  • CannaVet@lemmy.world
  • devve@lemmy.world
  • ayyy@sh.itjust.works
  • curbstickle@anarchist.nexus
  • curbstickle_lw@lemmy.world
  • BE: 0.19.17
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org