Saltar al contenido
Noticias Tech
Tech

Una falla de 18 años en el módulo rewrite de NGINX permite ejecución remota sin autenticación

Investigadores de ciberseguridad han descubierto múltiples vulnerabilidades en NGINX Plus y NGINX Open, incluyendo una falla crítica de desbordamiento de búfer que permaneció s

2026-05-141 min de lectura
Fuente: Cloud360 · Noticias
Resumen generado con IA · Fuente original
Temas
Tech

Cybersecurity researchers have disclosed multiple security vulnerabilities impacting NGINX Plus and NGINX Open, including a critical flaw that remained undetected for 18 years. The vulnerability, discovered by depthfirst, is a heap buffer overflow issue impacting ngx_http_rewrite_module (CVE-2026-42945, CVSS v4 score: 9.2) that could allow an attacker to achieve remote code execution or cause a

Newsletter12,500+ suscriptores

Recibe el mejor contenido tech cada mañana

Gratis · Sin spam · Cancela cuando quieras