1.
CVE-2026-9256: nginx rewrite-module heap overflow when overlapping PCRE captures re-expand—giving heap-write and info-leak primitives for a viable RCE path; fixed in 1.31.1 and 1.30.2.
Skip to content
Curated 1 security research writeups, vulnerability advisories and exploitation analyses for CVE-2026-9256.