Looking for more?

Let us help you track the cyber-threat landscape

  • enterprise

    Starting at

    $200/mo

    Contact us for a qoute

    • Service integration: Access a range of integration options, from API access to Slack and Teams integration

    • Team-wide Pro access: Onboard your whole team in OSINTer. No extra seat expenses, usage costs or other hidden fees

    • Custom deployment: Need on-prem deployment for data-protection? Or maybe a custom solution? Contact us, and experience a sea of opportunities

    Contact us

Trending CVE's

Track their ever-evolving media presence

CVE-2026-42945: Heap Buffer Overflow in NGINX Plus Leading to Restart

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when the rewrite directive is followed by a rewrite, if, or set directive and an unnamed Perl-Compatible Regular Expression (PCRE) capture (for example, $1, $2) with a replacement string that includes a question mark (?). An unauthenticated attacker along with conditions beyond its control can exploit this vulnerability by sending crafted HTTP requests. This may cause a heap buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.



BaseScore:

8.1

CVE:

CVE-2026-42945

Weaknesses:

CWE-122

Keywords:



Loading CVE articles.

Frequently asked questions

Yes! For a long period OSINTer was without license, but has recently been licensed under Affero GPL v3. This means that you not only can take a peak in the inner-workings of OSINTer at the public Github repos, but also that we highly encourage participating in the developemnt of OSINTer.