Improper Verification of Cryptographic Signature in nginx-ui - #VU142599
Published: August 14, 2026
Vulnerability details
The vulnerability allows a remote user to execute arbitrary code as root.
The vulnerability exists due to improper verification of cryptographic signature in the backup restore mechanism when processing a crafted backup bundle. A remote user can upload a crafted backup archive that overwrites app.ini and then access the /api/pty terminal endpoint to execute arbitrary code as root.
No administrator interaction is required beyond the attacker\'s own session. In the official Docker image, the spawned shell runs with root privileges.