18 year old critical vulnerability found in Nginx

ejcho 37 points 2 comments May 13, 2026
twitter.com · View on Hacker News

Discussion Highlights (2 comments)

ktpsns

Severe, but you also need to use quite specific configuration to be vulnerable. I can imagine this pattern to be widespread in some classical PHP applications deployed via nginx.

ChrisArchitect

better links: https://depthfirst.com/research/nginx-rift-achieving-nginx-r... ( https://news.ycombinator.com/item?id=48126029 ) https://depthfirst.com/nginx-rift ( https://news.ycombinator.com/item?id=48123365 )

Semantic search powered by Rivestack pgvector
8,303 stories · 78,303 chunks indexed