CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107806

UNKNOWNCVSS 0NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

Nginx UI is a web user interface for the Nginx web server. From 2.3.8 until 2.5.0, an authenticated administrator with an active secure session can submit attacker-controlled portable backup key material and a matching manifest to POST /api/restore. The restore flow trusts the supplied key, decrypts

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-107806 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107806

UNKNOWNCVSS 0NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

Nginx UI is a web user interface for the Nginx web server. From 2.3.8 until 2.5.0, an authenticated administrator with an active secure session can submit attacker-controlled portable backup key material and a matching manifest to POST /api/restore. The restore flow trusts the supplied key, decrypts

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]