CVE-2026-42222
EUVD-2026-2713704.05.2026, 21:16
Nginx UI is a web user interface for the Nginx web server. In version 2.3.5, an unauthenticated bootstrap takeover exists in nginx-ui during the initial installation window exposed by POST /api/install. At time of publication no public patches are available.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nginxui | nginx_ui | 2.3.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration