Количество 16
Количество 16
BDU:2026-04820
Уязвимость модуля ngx_mail_auth_http_module HTTP-сервера NGINX Plus и NGINX Open Source, позволяющая нарушителю вызвать отказ в обслуживании
CVE-2026-27651
When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2026-27651
When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2026-27651
When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2026-27651
NGINX ngx_mail_auth_http_module vulnerability
CVE-2026-27651
When the ngx_mail_auth_http_modulemodule is enabled on NGINX Plus or N ...
GHSA-82w2-x7hf-5h8r
When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
RLSA-2026:7343
Important: nginx:1.26 security update
RLSA-2026:6923
Important: nginx:1.24 security update
RLSA-2026:6907
Important: nginx:1.24 security update
RLSA-2026:6906
Important: nginx security update
ELSA-2026-7343
ELSA-2026-7343: nginx:1.26 security update (IMPORTANT)
ELSA-2026-7002
ELSA-2026-7002: nginx security update (IMPORTANT)
ELSA-2026-6923
ELSA-2026-6923: nginx:1.24 security update (IMPORTANT)
ELSA-2026-6907
ELSA-2026-6907: nginx:1.24 security update (IMPORTANT)
ELSA-2026-6906
ELSA-2026-6906: nginx security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-04820 Уязвимость модуля ngx_mail_auth_http_module HTTP-сервера NGINX Plus и NGINX Open Source, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-27651 When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-27651 When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-27651 When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-27651 NGINX ngx_mail_auth_http_module vulnerability | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-27651 When the ngx_mail_auth_http_modulemodule is enabled on NGINX Plus or N ... | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
GHSA-82w2-x7hf-5h8r When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause worker processes to terminate. This issue may occur when (1) CRAM-MD5 or APOP authentication is enabled, and (2) the authentication server permits retry by returning the Auth-Wait response header. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
RLSA-2026:7343 Important: nginx:1.26 security update | 27 дней назад | |||
RLSA-2026:6923 Important: nginx:1.24 security update | 29 дней назад | |||
RLSA-2026:6907 Important: nginx:1.24 security update | 27 дней назад | |||
RLSA-2026:6906 Important: nginx security update | 27 дней назад | |||
ELSA-2026-7343 ELSA-2026-7343: nginx:1.26 security update (IMPORTANT) | 26 дней назад | |||
ELSA-2026-7002 ELSA-2026-7002: nginx security update (IMPORTANT) | 29 дней назад | |||
ELSA-2026-6923 ELSA-2026-6923: nginx:1.24 security update (IMPORTANT) | 29 дней назад | |||
ELSA-2026-6907 ELSA-2026-6907: nginx:1.24 security update (IMPORTANT) | 29 дней назад | |||
ELSA-2026-6906 ELSA-2026-6906: nginx security update (IMPORTANT) | 30 дней назад |
Уязвимостей на страницу