基于 NGINX 和 LuaJIT 的 OpenResty Web 平台 1.29.2.4 版本现已正式发布。
版本亮点:移植 nginx 的漏洞补丁
CVE-2026-42945: Buffer overflow in the ngx_http_rewrite_module
CVE-2026-42946: Buffer overread in the ngx_http_scgi_module and ngx_http_uwsgi_module
CVE-2026-42934: Buffer overread in the ngx_http_charset_module
CVE-2026-40460: HTTP/3 address spoofing
CVE-2026-40701: resolver use-after-free in OCSP
2026年5月19日官方最新的补丁已经集成了,希望尽快更新一下面板。
http://openresty.org/cn/download.html |