VYPR

apk package

wolfi/nginx-stable-fastcgi-params

pkg:apk/wolfi/nginx-stable-fastcgi-params

Vulnerabilities (3)

  • CVE-2026-48142MedJun 17, 2026
    affected < 1.30.4-r2fixed 1.30.4-r2

    NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When content is served or proxied through a location block with both source_charset utf-8; and a charset directive (for example, charset koi8-r;) configured, remote, unauthenticated attac

  • CVE-2026-42055HigJun 17, 2026
    affected < 1.30.4-r2fixed 1.30.4-r2

    NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set

  • CVE-2025-53859LowAug 13, 2025
    affected < 1.30.0-r0fixed 1.30.0-r0

    NGINX Open Source and NGINX Plus have a vulnerability in the ngx_mail_smtp_module that might allow an unauthenticated attacker to over-read NGINX SMTP authentication process memory; as a result, the server side may leak arbitrary bytes sent in a request to the authentication serv