CVE-2026-50892 UNKNOWN

CVE-2026-50892

Published: 2026-06-15

Description

Incorrect access control in the "Let's Encrypt" certificate download endpoint of Nginx Proxy Manager v2.14.0 allows authenticated attackers to obtain the TLS private key material via a crafted GET request.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…