NGINX · roxy-wi
CVE-2026-33432: CWE-287: Autenticación incorrecta en roxy-wi
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en roxy-wi. roxy-wi: <= 8.2.8.2
DIRECTORIO CVE · 2026
140 registros, ordenados por fecha oficial de publicación descendente.
Mostrando 40 registros · Página 2 de 2
NGINX · roxy-wi
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en roxy-wi. roxy-wi: <= 8.2.8.2
NGINX · roxy-wi
El registro oficial identifica la vulnerabilidad «CWE-24: Path Traversal: '../filedir'» en roxy-wi. roxy-wi: < 8.2.6.4
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: < 2.3.4
NGINX · postiz-app
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en postiz-app. postiz-app: < 2.21.6
NGINX · oauth2-proxy
El registro oficial identifica la vulnerabilidad «CWE-290: vulnerabilidad de seguridad» en oauth2-proxy. oauth2-proxy: < 7.15.2
NGINX · wolfSSL
El registro oficial identifica la vulnerabilidad «CWE-295: vulnerabilidad de seguridad» en wolfSSL. wolfSSL: 0 hasta 5.9.0
NGINX · rack
El registro oficial identifica la vulnerabilidad «CWE-625: vulnerabilidad de seguridad» en rack. rack: < 2.2.23, >= 3.0.0.beta1, < 3.1.21, >= 3.2.0, < 3.2.6
NGINX · oneuptime
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en oneuptime. oneuptime: < 10.0.42
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-306: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: <= 2.3.5
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-78: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: <= 2.3.3
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-20: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: < 2.3.4
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-362: Ejecución concurrente con sincronización incorrecta (Race Condition)» en nginx-ui. nginx-ui: < 2.3.4
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en nginx-ui. nginx-ui: < 2.3.4
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-312: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: < 2.3.4
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-125: Lectura fuera de límites (Out-of-bounds Read)» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.29.0 hasta 1.29.7, 1.1.19 hasta 1.28.3; NGINX Plus: R36 hasta R36 P3, R35 hasta R35 P2, R34 hasta *, R33 hasta *, R32 hasta R32 P5
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.29.0 hasta 1.29.7, 1.27.2 hasta 1.28.3; NGINX Plus: R36 hasta R36 P3, R35 hasta R35 P2, R34 hasta *, R33 hasta *
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-93: vulnerabilidad de seguridad» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.29.0 hasta 1.29.7, 0.6.27 hasta 1.28.3; NGINX Plus: R36 hasta R36 P3, R35 hasta R35 P2, R34 hasta *, R33 hasta *, R32 hasta R32 P5
NGINX · NGINX Open Source
El registro oficial identifica la vulnerabilidad «CWE-190: vulnerabilidad de seguridad» en NGINX Open Source. NGINX Open Source: 1.29.0 hasta 1.29.7, 1.1.19 hasta 1.28.3
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-122: Desbordamiento de búfer en memoria dinámica (Heap-based Buffer Overflow)» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.29.0 hasta 1.29.7, 0.5.13 hasta 1.28.3; NGINX Plus: R36 hasta R36 P3, R35 hasta R35 P2, R34 hasta *, R33 hasta *, R32 hasta R32 P5
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-476: vulnerabilidad de seguridad» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.29.0 hasta 1.29.7, 0.5.15 hasta 1.28.3; NGINX Plus: R36 hasta R36 P3, R35 hasta R35 P2, R34 hasta *, R33 hasta *, R32 hasta R32 P5
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-20: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.9, 0 hasta 1.14.5, 0 hasta 1.15.1
NGINX · wolfSSL
El registro oficial identifica la vulnerabilidad «CWE-125: Lectura fuera de límites (Out-of-bounds Read)» en wolfSSL. wolfSSL: 0 hasta 5.9.0
NGINX · wolfSSL
El registro oficial identifica la vulnerabilidad «CWE-122: Desbordamiento de búfer en memoria dinámica (Heap-based Buffer Overflow)» en wolfSSL. wolfSSL: 0 hasta 5.9.0
NGINX · kan
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en kan. kan: < 0.5.5
NGINX · roxy-wi
El registro oficial identifica la vulnerabilidad «CWE-77: vulnerabilidad de seguridad» en roxy-wi. roxy-wi: < 8.2.6.3
NGINX · OTP
El registro oficial identifica la vulnerabilidad «CWE-444: vulnerabilidad de seguridad» en OTP. OTP: 5.10 hasta *; OTP: 17.0 hasta *, 84adefa331c4159d432d22840663c38f155cd4c1 hasta *
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-20: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.8, 0 hasta 1.14.4, 0 hasta 1.15.0
NGINX · nginx-ui
El registro oficial identifica la vulnerabilidad «CWE-311: vulnerabilidad de seguridad» en nginx-ui. nginx-ui: < 2.3.3
NGINX · TinyWeb
El registro oficial identifica la vulnerabilidad «CWE-400: vulnerabilidad de seguridad» en TinyWeb. TinyWeb: < 2.02
NGINX · TinyWeb
El registro oficial identifica la vulnerabilidad «CWE-400: vulnerabilidad de seguridad» en TinyWeb. TinyWeb: < 2.02
NGINX · indico
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en indico. indico: < 3.3.10
NGINX · NGINX Open Source / NGINX Plus
El registro oficial identifica la vulnerabilidad «CWE-349: vulnerabilidad de seguridad» en NGINX Open Source / NGINX Plus. NGINX Open Source: 1.3.0 hasta 1.29.5; NGINX Plus: R36 hasta R36 P2, R35 hasta R35 P1, R34 hasta *, R33 hasta *, R32 hasta R32 P4
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-770: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.7, 0 hasta 1.14.3
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-754: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.7, 0 hasta 1.14.3
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-20: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.7, 0 hasta 1.14.3
NGINX · ingress-nginx
El registro oficial identifica la vulnerabilidad «CWE-20: vulnerabilidad de seguridad» en ingress-nginx. ingress-nginx: 0 hasta 1.13.7, 0 hasta 1.14.3
NGINX · osim
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en osim. osim: 0 hasta v2025.9.0
NGINX · nixpkgs
El registro oficial identifica la vulnerabilidad «CWE-538: vulnerabilidad de seguridad» en nixpkgs. nixpkgs: >= 23.05, < 26.05
NGINX · MyTube
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en MyTube. MyTube: < 1.7.66
NGINX · roxy-wi
El registro oficial identifica la vulnerabilidad «CWE-78: vulnerabilidad de seguridad» en roxy-wi. roxy-wi: < 8.2.8.2