UNKNOWNCVE-2026-33026

nginx-ui Backup Restore Allows Tampering with Encrypted Backups

Platform

nginx

Component

nginx-ui

Fixed in

2.3.4

Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, the nginx-ui backup restore mechanism allows attackers to tamper with encrypted backup archives and inject malicious configuration during restoration. This issue has been patched in version 2.3.4.

How to fix

Actualice nginx-ui a la versión 2.3.4 o posterior. Esta versión corrige la vulnerabilidad que permite la manipulación de copias de seguridad cifradas y la inyección de configuraciones maliciosas durante la restauración.

Monitor your dependencies automatically

Get notified when new vulnerabilities affect your projects. Free forever.

Start free
CVE-2026-33026 — Vulnerability Details | NextGuard | NextGuard