CVE-2026-33032 exposes nginx-ui to unauthenticated takeover via MCP endpoint, impacting 2,600+ instances with active ...
Attackers can abuse the near-maximum severity flaw in nginx-ui to restart, create, modify, and delete NGINX configuration ...
The vulnerability, with a CVSS score of 9.8, relates to the software’s support for Model Context Protocol (MCP) servers, ...
A critical vulnerability in Nginx UI with Model Context Protocol (MCP) support is now being exploited in the wild for full ...
A critical authentication bypass in nginx-ui, a widely used open-source web interface for managing nginx servers, has been ...
ECH encrypts the TLS handshake, backends speak HTTP/2, and Multipath TCP uses multiple network paths in parallel.
A critical Nginx UI vulnerability that allows attackers to take full control of servers has been exploited in the wild.
Web server company NGINX styles itself as "the secret heart of the modern web" and claims to run 60 percent of the busiest websites in the world. CEO Gus Robertson is an Australian native with big ...