Nginx Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code – PoC Released

A high-severity heap buffer overflow in NGINX Plus and NGINX Open Source can let unauthenticated attackers crash worker processes and, under certain conditions, run arbitrary code. Tracked as CVE-2026-42533, the flaw affects configurations that use regex-based map directives or non-cacheable variables in string expressions, and it is especially dangerous when the Stream module’s ssl_preread feature […]

This article has been indexed from Cyber Security News

Read the original article: