2024-04-23
nginx-1.26.0 stable version has been released,
incorporating new features and bug fixes from the 1.25.x mainline branch —
including experimental HTTP/3 support,
HTTP/2 on a per-server bas
NULL pointer dereference in HTTP/3
Severity: major
Advisory
CVE-2024-24989
Not vulnerable: 1.25.4+
Vulnerable: 1.25.3
Use-after-free in HTTP/3
Severity: major
Advisory
CVE-2024-24990
Not vulnerable: 1