18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE

Source: The Hacker News  ·  Category: Security News — Technology


18-year-old NGINX rewrite module heap buffer overflow (CVE-2026-42945, CVSS 9.2) enables unauthenticated RCE. Law firms using NGINX web servers must patch urgently; this is a critical internet-facing exposure.

→ Read the full article

Read more