18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE
What's new: A critical vulnerability, CVE-2026-42945, has been identified in NGINX's rewrite module, allowing unauthenticated remote code execution (RCE). This...
Top Network Security News, Internet and IT security news and headlines from around the web.
What's new: A critical vulnerability, CVE-2026-42945, has been identified in NGINX's rewrite module, allowing unauthenticated remote code execution (RCE). This...
What's new: Three malicious versions of the Node-IPC package (versions 11.10.2, 11.10.3, and 11.10.4) have been identified, containing a stealer...
What's new: Nsasoft US LLC has shipped NSAuditor AI Enterprise Edition 0.5.4 — the final v0.5.x close-out cycle and the...
What's new: A new local privilege escalation (LPE) vulnerability in the Linux kernel, tracked as CVE-2026-46300 with a CVSS score...
What's new: CISA has added CVE-2026-20182, a critical authentication bypass vulnerability in Cisco Catalyst SD-WAN Controller, to its Known Exploited...