The Hacker News
"NGINX CVE-2026-42945 exploited in the wild, causing worker crashes and possible RCE." Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents. Accessed on 17 May 2026, 1436 UTC. Content and Source: "The Hacker News." URL-- https://thehackernews.com/ Please check URL or scroll down to read your selections. Thanks for joining us today. Russ Roberts (https://www.hawaiicybersecurityjournal.net). NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE May 17, 2026 Server Security / Vulnerability A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure, according to VulnCheck . The vulnerability, tracked as CVE-2026-42945 (CVSS score: 9.2), is a heap buffer overflow in ngx_http_rewrite_module affecting NGINX versions 0.6.27 through 1.30.0. According to AI-native security company depthfirst, the vulner...