Back Feeds.4Sysops F5 patches critical code execution flaws in NGINX web servers
F5 has released out-of-band security updates to address multiple vulnerabilities in the NGINX web server. The patches resolve two critical-severity flaws, CVE-2026-42530 and CVE-2026-42055, which could allow remote attackers to execute arbitrary code. These vulnerabilities affect NGINX systems with non-default configurations and can trigger a denial-of-service condition or worker process restart. Source
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
