CVE-2026-60005

HIGH CVSS 4.0: 8.8 EPSS 0.53%
Updated Aug 11, 2026
F5
Parameter Value
CVSS 8.8 (HIGH)
Affected Versions 1.3.0 — r36
Fixed In 2.6.7
Type CWE-908 (Use of Uninitialized Resource)
Vendor F5
Public PoC No

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_slice_module module. When the slice directive and unnamed regex captures are configured or when a background cache update happens, unauthenticated attackers can send requests that may cause uninitialized memory access in the NGINX worker process, leading to limited disclosure of memory or a restart. Impact: This vulnerability may allow remote, unauthenticated attackers to have limited control to disclose memory contents or restart the NGINX worker process.

There is no control plane exposure; this is a data plane issue only. Note: The ngx_http_slice_module module is not enabled by default; it's enabled with the --with-http_slice_module configuration parameter. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Attack Requirements
None
No additional conditions
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
Low
Partial data leak
Integrity
None
No data modification
Availability
High
Complete denial of service

CVSS Vector v4.0

Vulnerable Products 37

Configuration From (including) Up to (excluding)
F5 Nginx_App_Protect_Waf
cpe:2.3:a:f5:nginx_app_protect_waf:*:*:*:*:*:*:*:*
4.11.0 <= 4.16.0
F5 Nginx_App_Protect_Waf
cpe:2.3:a:f5:nginx_app_protect_waf:*:*:*:*:*:*:*:*
5.2.0 <= 5.8.0
F5 Nginx_Gateway_Fabric
cpe:2.3:a:f5:nginx_gateway_fabric:*:*:*:*:*:*:*:*
1.3.0 <= 1.6.2
F5 Nginx_Gateway_Fabric
cpe:2.3:a:f5:nginx_gateway_fabric:*:*:*:*:*:*:*:*
2.0.0 2.6.7
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:*:*:*:*
3.5.0 <= 3.7.2
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:*:*:*:*
5.0.0 5.5.3
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:*:*:*:*
2026-lts-r1 2026-lts-r4
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:4.0.0:*:*:*:*:*:*:*
— —
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:4.0.1:*:*:*:*:*:*:*
— —
F5 Nginx_Instance_Manager
cpe:2.3:a:f5:nginx_instance_manager:*:*:*:*:*:*:*:*
2.17.0 2.22.2
F5 Nginx_Open_Source
cpe:2.3:a:f5:nginx_open_source:*:*:*:*:*:*:*:*
1.30.0 1.30.4
F5 Nginx_Open_Source
cpe:2.3:a:f5:nginx_open_source:1.31.2:*:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:*:*:*:*:*:*:*:*
37.0.0.1 37.0.3.1
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:*:*:*:*:*:*:*:*
r33 r36
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:37.0.0:*:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:-:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p1:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p2:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p3:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p4:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p5:*:*:*:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p6:*:*:*:*:*:*
— —
F5 Waf
cpe:2.3:a:f5:waf:*:*:*:*:*:nginx:*:*
5.9.0 5.13.4
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:continuous_releases:*:*:*
3.5.0 <= 3.7.2
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:continuous_releases:*:*:*
5.0.0 5.5.3
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:*:*:*:*:long-term_support:*:*:*
2026-lts-r1 2026-lts-r4
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:4.0.0:*:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Ingress_Controller
cpe:2.3:a:f5:nginx_ingress_controller:4.0.1:*:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:*:*:*:*:long-term_support:*:*:*
37.0.0.1 37.0.3.1
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:*:*:*:*:continuous_releases:*:*:*
r33 r36
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:-:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p1:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p2:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p3:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p4:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p5:*:*:continuous_releases:*:*:*
— —
F5 Nginx_Plus
cpe:2.3:a:f5:nginx_plus:r36:p6:*:*:continuous_releases:*:*:*
— —