Link following in nginx-ui - #VU142589
Published: August 14, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper handling of symbolic links in the backup restore process when processing an attacker-supplied backup archive with Nginx restore enabled. A remote attacker can upload a specially crafted backup archive containing symlink entries to cause a denial of service.
Exploitation requires the restore operation to accept a correctly formatted encrypted backup archive and to run with restore_nginx=true.