X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - Aujourd'hui 10:02

New NGINX Vulnerability Allow Remote Attackers to Trigger Malicious Code

A new vulnerability in NGINX JavaScript (njs), tracked as CVE‑2026‑8711, allows unauthenticated remote attackers to trigger a heap‑based buffer overflow that can lead to denial‑of‑service and, in some conditions, remote code execution in the NGINX worker process. The flaw is…

Articles similaires

Sorry! Image not available at this time

New NGINX Vulnerability Allow Remote Attackers to Trigger Malicious Code

itsecuritynews.info - 10:02

A new vulnerability in NGINX JavaScript (njs), tracked as CVE‑2026‑8711, allows unauthenticated remote attackers to trigger a heap‑based buffer...

Sorry! Image not available at this time

CVE-2026-42945: Imperva Customers Protected Against Critical NGINX Rewrite Module Vulnerability

itsecuritynews.info - 16/May 02:32

TL;DR: Researchers recently disclosed CVE-2026-42945, a critical heap-based buffer overflow vulnerability affecting both NGINX Open Source and NGINX...

Sorry! Image not available at this time

Palo Alto Networks PAN-OS flaw exploited for remote code execution

securityaffairs.co - 06/May 08:52

Palo Alto Networks warns of a critical PAN-OS flaw (CVE-2026-0300) that is under active attack, allowing unauthenticated remote code execution. Palo...

Sorry! Image not available at this time

Palo Alto Networks PAN-OS flaw exploited for remote code execution

securityaffairs.co - 06/May 08:52

Palo Alto Networks warns of a critical PAN-OS flaw (CVE-2026-0300) that is under active attack, allowing unauthenticated remote code execution. Palo...

Sorry! Image not available at this time

NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

itsecuritynews.info - 17/May 15:02

A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure,...

Sorry! Image not available at this time

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945

securityaffairs.co - 18/May 06:33

A critical NGINX flaw (CVE-2026-42945) is actively exploited, allowing crashes or possible code execution via malicious HTTP requests. A critical...

Sorry! Image not available at this time

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945

securityaffairs.co - 18/May 06:33

A critical NGINX flaw (CVE-2026-42945) is actively exploited, allowing crashes or possible code execution via malicious HTTP requests. A critical...

Sorry! Image not available at this time

NGINX Rift: an 18-year-old flaw in the world’s most deployed web server just came to light

securityaffairs.co - 14/May 13:30

Researchers found a critical 18-year-old buffer overflow flaw in NGINX, tracked as CVE-2026-42945 and named NGINX Rift. If you run NGINX, and...

Sorry! Image not available at this time

CVE-2026-42945 — NGINX Heap Buffer Overflow RCE

thecyberthrone.in - 17/May 12:49

CVE: CVE-2026-42945CVSS: 9.2 — CriticalVendor: NGINX / F5Affected Versions: 0.6.27 through 1.30.0Vulnerability Type: Heap Buffer OverflowImpact:...

Sorry! Image not available at this time

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945

itsecuritynews.info - 18/May 07:33

A critical NGINX flaw (CVE-2026-42945) is actively exploited, allowing crashes or possible code execution via malicious HTTP requests. A critical...