logo

Hackers Actively Exploiting Critical NGINX RCE Vulnerability in the Wild

ID: 39653bda-7972-583f-b8c8-49f8bbbba0a6

STIX ID: report--39653bda-7972-583f-b8c8-49f8bbbba0a6

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-05-18

Date Updated: 2026-05-22

Author: Abinaya

...
...

Security researchers reported active exploitation of CVE-2026-42945, a heap buffer overflow affecting NGINX Open Source and NGINX Plus that can crash worker processes and, under uncommon configurations (ASLR disabled and certain rewrite rules), enable remote code execution; attackers began scanning and exploiting systems within days of disclosure, and Censys data suggests millions of potentially affected internet-facing NGINX instances, so immediate patching and configuration audits are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.