Vulnérabilité dans F5 NGINX (16 septembre 2026)
A vulnerability in F5 NGINX allows attackers to cause a denial of service and potentially compromise data integrity. This affects various NGINX products and versions, requiring immediate patching to mitigate the risk.
A vulnerability has been identified within F5 NGINX, presenting a risk of denial of service and data integrity issues. This vulnerability can be exploited to disrupt service and potentially lead to data compromise. The affected products include NGINX Gateway Fabric versions prior to 2.7.2, NGINX Ingress Controller versions prior to 5.6.3, NGINX Open Source versions 1.31.x prior to 1.31.6, NGINX Open Source versions prior to 1.30.5, NGINX Plus versions 37.1.x prior to 37.1.1.2, and NGINX Plus versions 37.x prior to 37.0.6.2. The vulnerability is addressed through the publication of security bulletins by F5. Users are advised to consult the linked security bulletin for specific instructions on applying the necessary patches and mitigations. The bulletin provides detailed information on how to remediate the issue and protect systems from exploitation.