216.73.216.233

CVE-2026-33026

· Published 30/03/2026 20:16 · Modified 31/03/2026 15:16

Labels: CVE-2026-33026 2026-03-30CVE-2026-33026CWE-312[email protected]

Essential information

Published
30/03/2026 20:16
Modified
31/03/2026 15:16
Author
Creator
CVSS
9.4 CRITICAL (v3) 9.4 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, the nginx-ui backup restore mechanism allows attackers to tamper with encrypted backup archives and inject malicious configuration during restoration. This issue has been patched in version 2.3.4.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
nginx / nginx ui cpe:2.3:a:nginx:nginx_ui:<2.3.4:*:*:*:*:*:*:*

References