vulnerability

Debian: CVE-2024-33452: libnginx-mod-http-lua, nginx -- security update

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:P)
Published
Apr 22, 2025
Added
Apr 28, 2025
Modified
Jan 12, 2026

Description

An issue in OpenResty lua-nginx-module v.0.10.26 and before allows a remote attacker to conduct HTTP request smuggling via a crafted HEAD request.

Solutions

debian-upgrade-libnginx-mod-http-luadebian-upgrade-nginxno-fix-debian-deb-package
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.