Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

ubuntu логотип

CVE-2026-28755

4 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2026-28755

4 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-28755

4 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2026-28755

4 месяца назад

NGINX ngx_stream_ssl_module vulnerability

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2026-28755

4 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_strea ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-hgfr-jmpr-2p89

4 месяца назад

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2026-04821

4 месяца назад

Уязвимость модуля ngx_stream_ssl_module HTTP-сервера NGINX Plus и NGINX Open Source, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20260505-73-0074

3 месяца назад

Уязвимость angie

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20260429-73-0042

3 месяца назад

Уязвимость nginx

CVSS3: 5.4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20784-1

2 месяца назад

Security update for nginx

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-28755

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-28755

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-28755

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-28755

NGINX ngx_stream_ssl_module vulnerability

CVSS3: 5.4
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-28755

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_strea ...

CVSS3: 5.4
0%
Низкий
4 месяца назад
github логотип
GHSA-hgfr-jmpr-2p89

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_stream_ssl_module module due to the improper handling of revoked certificates when configured with the ssl_verify_client on and ssl_ocsp on directives, allowing the TLS handshake to succeed even after an OCSP check identifies the certificate as revoked.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 5.4
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-04821

Уязвимость модуля ngx_stream_ssl_module HTTP-сервера NGINX Plus и NGINX Open Source, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 5.4
0%
Низкий
4 месяца назад
redos логотип
ROS-20260505-73-0074

Уязвимость angie

CVSS3: 5.4
0%
Низкий
3 месяца назад
redos логотип
ROS-20260429-73-0042

Уязвимость nginx

CVSS3: 5.4
0%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20784-1

Security update for nginx

2 месяца назад

Уязвимостей на страницу