Known Vulnerabilities for Lua-nginx-module by Openresty
Listed below are 1 of the newest known vulnerabilities associated with "Lua-nginx-module" by "Openresty".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42945 json | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when ... | Not Provided | 2026-05-13 | 2026-05-21 |
| CVE-2026-42934 json | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, an... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-40701 json | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ssl_module module when the ssl_verify_client directiv... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-40460 json | When NGINX Plus or NGINX Open Source are configured to use the HTTP/3 QUIC module, an attacker may be able to spoof their so... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-27784 json | The 32-bit implementation of NGINX Open Source has a vulnerability in the ngx_http_mp4_module module, which might allow an at... | Not Provided | 2026-03-24 | 2026-03-25 |
| CVE-2026-27651 json | When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed requests can cause work... | Not Provided | 2026-03-24 | 2026-03-24 |
| CVE-2026-23941 json | Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in Erlang OTP (inets httpd module) allo... | Not Provided | 2026-03-13 | 2026-04-07 |
| CVE-2020-36309 json | ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the... | 5.3 - MEDIUM | 2021-04-06 | 2021-06-03 |