F5 NGINX Open Source是美国F5公司的一个高性能Web服务器、反向代理服务器、负载均衡器和API网关。 F5 NGINX Open Source 32位版本存在输入验证错误漏洞,该漏洞源于ngx_http_mp4_module模块存在越界读取或写入问题,可能导致使用特制MP4文件时终止工作进程。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| F5 | NGINX Open Source | 1.29.0< 1.29.7 |
affected |
1.1.19< 1.28.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| F5 | NGINX Open Source | 1.29.0 ~ 1.29.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-27654 | 8.2 HIGH | NGINX ngx_http_dav_module vulnerability |
| CVE-2026-32647 | 7.8 HIGH | NGINX ngx_http_mp4_module vulnerability |
| CVE-2026-27651 | 7.5 HIGH | NGINX ngx_mail_auth_http_module vulnerability |
| CVE-2026-28755 | 5.4 MEDIUM | NGINX ngx_stream_ssl_module vulnerability |
| CVE-2026-28753 | 3.7 LOW | NGINX ngx_mail_proxy_module vulnerability |
No comments yet