Skip to content

feat(templated):cve-2026-33032 - #867

Open
sanjaymahajan14 wants to merge 5 commits into
google:masterfrom
sanjaymahajan14:feature/cve-2026-33032
Open

feat(templated):cve-2026-33032#867
sanjaymahajan14 wants to merge 5 commits into
google:masterfrom
sanjaymahajan14:feature/cve-2026-33032

Conversation

@sanjaymahajan14

Copy link
Copy Markdown
Contributor

I have created a plugin for CVE-2026-33032 .
Also created Testbeds for NginxUI. Following is link -
google/security-testbeds#231
Please review and approve.

@robert-doyensec robert-doyensec left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

small changes to remove the variable and improve the recommendation and description

Comment thread templated/templateddetector/plugins/cve/2026/NginxUI_CVE_2026_33032.textproto Outdated
Comment thread templated/templateddetector/plugins/cve/2026/NginxUI_CVE_2026_33032.textproto Outdated
Comment thread templated/templateddetector/plugins/cve/2026/NginxUI_CVE_2026_33032.textproto Outdated
sanjaymahajan14 and others added 3 commits August 17, 2026 15:16
…33032.textproto

Co-authored-by: Robert Dick <robert@doyensec.com>
…33032.textproto

Co-authored-by: Robert Dick <robert@doyensec.com>
…33032.textproto

Co-authored-by: Robert Dick <robert@doyensec.com>

@robert-doyensec robert-doyensec left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good, detects properly. One small change to testbed requested.

@robert-doyensec

Copy link
Copy Markdown
Collaborator

LGTM - Approved
This can be merged along with google/security-testbeds#231

Reviewer: Robert, Doyensec
Plugin: Authentication bypass in Nginx UI MCP endpoint
Drawbacks: None.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants