CyberSecurityBoardThreat Intel · CVEs · Products

Tag: NGINX

Critical CVEs

CVE-2026-42945: NGINX Rift Heap Overflow

A heap overflow in NGINX's expression-evaluation code, disclosed in May 2026. Similar class of flaw as CVE-2026-42533, involving two-pass script engine. Exploit…

CVE-2026-42945 heap overflow NGINX Rift
June 25, 2026