News

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-05-18 06:33:16 UTC

A critical NGINX flaw (CVE-2026-42945) is actively exploited, allowing crashes or possible code execution via malicious HTTP requests. A critical vulnerability in NGINX Plus and NGINX Open, tracked as CVE-2026-42945 (CVSS v4 score of 9.2), is already being ac…

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945 A critical vulnerability in NGINX Plus and NGINX Open, tracked as CVE-2026-42945 (CVSS v4 score of 9.2), is already being ac… [+3084 chars]