Skip to content

help request: Will APISIX be affected by the vulnerability CVE-2026-42533? #13734

Description

@smileby

Description

APISIX is built upon Nginx, and most versions of Nginx are affected by this vulnerability. So, does APISIX need to be upgraded?

Environment

  • APISIX version (run apisix version): 3.2.0、3.13.0
  • Operating system (run uname -a):
  • OpenResty / Nginx version (run openresty -V or nginx -V):
  • etcd version, if relevant (run curl http://127.0.0.1:9090/v1/server_info):
  • APISIX Dashboard version, if relevant:
  • Plugin runner version, for issues related to plugin runners:
  • LuaRocks version, for installation issues (run luarocks --version):

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionlabel for questions asked by users

    Type

    No type

    Projects

    Status
    📋 Backlog

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions