Beveiligingsadvies

CVE-2026-50892

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-15 00:00:00
Laatst bijgewerkt 2026-06-16 18:05:28
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

Incorrect access control in the "Let's Encrypt" certificate download endpoint of Nginx Proxy Manager v2.14.0 allows authenticated attackers to obtain the TLS private key material via a crafted GET request.