Nginx
F5 Networks has issued the security advisory, pointing out that the Nginx web server, which uses an asynchronous event-driven framework, has a security vulnerability, CVE-2026-42945, which occurs in the ngx_http_rewrite_module component.
F5 Networks announced multiple security vulnerabilities that have been fixed in the latest release of Nginx 1.30.1.
CVE-2026-42945, CVE-2026-42946, CVE-2026-40701, CVE-2026-42934 and CVE-2026-40460 will affect ASUSTOR products with Nginx 1.18 or 1.24 installed.
- Nginx 1.30.1 has been updated on ADM 5.1.3.RI81 to resolve the issues.