Critical NGINX Heap Buffer Overflow CVE-2026-42533 Allows DoS and Potential RCE
F5 has patched a critical heap buffer overflow vulnerability in NGINX, tracked as CVE-2026-42533, which can crash worker processes and may allow…
F5 has patched a critical heap buffer overflow vulnerability in NGINX, tracked as CVE-2026-42533, which can crash worker processes and may allow…
A newly identified cyber attack campaign, tracked as StrikeShark by Kaspersky, is deploying a previously undocumented malware family called SharkLoader to deliver…
Sygnia, tracking the China-nexus group as Velvet Ant, discovered that the group backdoored Linux PAM and OpenSSH components to maintain persistent access…
NGINX Plus versions prior to 37.0.3.1 are vulnerable to CVE-2026-42533. Fixed in 37.0.3.1.
F5 advisory lists NGINX Gateway Fabric as affected by CVE-2026-42533, though fixed builds were not yet published at the time of the…
F5 advisory lists NGINX Instance Manager as affected by CVE-2026-42533, though fixed builds were not yet published at the time of the…
F5 advisory lists NGINX Ingress Controller as affected by CVE-2026-42533, though fixed builds were not yet published at the time of the…
F5 advisory lists NGINX App Protect WAF as affected by CVE-2026-42533, though fixed builds were not yet published at the time of…
F5 WAF for NGINX versions 5.9.0-5.13.1 are affected by CVE-2026-42055.
F5 DoS for NGINX version 4.9.0 is affected by CVE-2026-42055.