Package impact
Go / github.com/0xJacky/Nginx-UI
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-44015 | critical | 9.9 | 9.9 | 15d ago | Nginx-UI has Server-Side Request Forgery (SSRF) via Cluster Proxy Middleware that Allows Access to Internal Services | |
| CVE-2026-42221 | critical | 9.8 | 9.8 | 23d ago | Nginx-UI: Unauthenticated First-Run Installer Allows Remote Initial Admin Claim |