yousukezan[verified]@yousukezanPoC
Nginx UI CVE-2026-33032 is a critical vulnerability allowing unauthenticated attackers to modify configuration and hijack traffic via the /mcp_message endpoint; a PoC is already public, no patch exists yet, and immediate manual mitigation is recommended.
FOFA[verified]@fofabotDisclosure
The post announces CVE-2026-33032, detailing a remote takeover vulnerability in Nginx, with an FOFA search result count and a link to a GitHub advisory, but it provides no PoC, exploit code, or evidence of active exploitation.
Sekurak[verified]@SekurakDisclosure
The post reports a critical CVE‑2026‑33032 in Nginx UI that allowed unauthenticated configuration changes and reads, which has been corrected in v2.3.4; administrators are urged to patch and limit access.
Yotam Perkal[verified]@pyotam2Active Exploitation
CVE-2026-33032 is an unauthenticated RCE-like vulnerability in nginx‑ui that is reportedly being actively exploited in the wild, with additional technical details and PoC information available in a referenced blog post.
Pluto Security[verified]@pluto_securityActive Exploitation
The disclosure announces a critical nginx‑ui vulnerability (CVE‑2026‑33032) that has been actively exploited in the wild, exposing over 500K users to full server takeover via unauthenticated requests.
TangentCash ✨[verified]@tangentcashActive Exploitation
CVE-2026-33032 in nginx‑ui is being actively exploited with a high CVSS score; immediate patch to v2.3.4 or disabling of MCP is recommended.
Nicolas Krassas[verified]@DinosnActive Exploitation
The headline reports that CVE‑2026‑33032 is being actively exploited to take over Nginx servers, but provides no proof‑of‑concept, patch information, or detailed technical description.
Hunt.io[verified]@HuntioActive Exploitation
CVE‑2026‑33032, a critical nginx‑ui authentication bypass, is currently being exploited in the wild with publicly available PoCs, and administrators should immediately patch and restrict external access.