Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 12

Количество 12

fstec логотип

BDU:2026-06965

3 месяца назад

Уязвимость модуля ngx_http_charset_module веб-серверов NGINX Plus и NGINX Open Source, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 4.8
EPSS: Низкий
redos логотип

ROS-20260626-73-0041

около 1 месяца назад

Уязвимость angie

CVSS3: 4.8
EPSS: Низкий
redos логотип

ROS-20260609-73-0011

около 2 месяцев назад

Уязвимость nginx

CVSS3: 4.8
EPSS: Низкий
ubuntu логотип

CVE-2026-42934

3 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2026-42934

3 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2026-42934

3 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2026-42934

3 месяца назад

NGINX ngx_http_charset_module vulnerability

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2026-42934

3 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-6vmc-2wh4-77qp

3 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20796-1

2 месяца назад

Security update for nginx

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2050-1

2 месяца назад

Security update for nginx

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2370-1

около 2 месяцев назад

Security update for nginx

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-06965

Уязвимость модуля ngx_http_charset_module веб-серверов NGINX Plus и NGINX Open Source, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 4.8
1%
Низкий
3 месяца назад
redos логотип
ROS-20260626-73-0041

Уязвимость angie

CVSS3: 4.8
1%
Низкий
около 1 месяца назад
redos логотип
ROS-20260609-73-0011

Уязвимость nginx

CVSS3: 4.8
1%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-42934

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
1%
Низкий
3 месяца назад
redhat логотип
CVE-2026-42934

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-42934

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
1%
Низкий
3 месяца назад
msrc логотип
CVE-2026-42934

NGINX ngx_http_charset_module vulnerability

CVSS3: 4.8
1%
Низкий
3 месяца назад
debian логотип
CVE-2026-42934

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ ...

CVSS3: 4.8
1%
Низкий
3 месяца назад
github логотип
GHSA-6vmc-2wh4-77qp

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives are configured, unauthenticated attackers can send requests that with conditions beyond the attackers' control to cause a heap buffer over-read in the NGINX worker process, leading to limited disclosure of memory or a restart.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.8
1%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20796-1

Security update for nginx

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2050-1

Security update for nginx

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2370-1

Security update for nginx

около 2 месяцев назад

Уязвимостей на страницу