NGINX Rift: critical bug CVE-2026-42945 exploited in...
The critical NGINX Rift vulnerability (CVE-2026-42945) in the rewrite mechanism puts the internet fronts of large companies, CDNs, and API gateways at risk. Researchers from VulnCheck and NeuraCyBINT report the first attempts at exploitation on the internet shortly after the details were published, indicating an extremely short time from advisory to real attacks. For businesses, this means that the traditional model of 'waiting for a scheduled update window' could lead to the compromise of public services and data leaks. The key question for IT directors and CIOs in Kazakhstan and Central Asia is whether you have inventoried your NGINX fronts and checked the configurations before malicious scanners do it for you.