The number and severity of CVEs published that impact products developed by Nitro over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-44372MEDIUM Nitro is a next generation server toolkit. Prior to 3.0.260429-beta, an attacker could turn a redirect route rule using wildcards rewrite into a cross-host redirect by sliding an e | May 13, 2026 | 6.1 | 26 | NO | NO |
CVE-2026-44373MEDIUM Nitro is a next generation server toolkit. Prior to 3.0.260429-beta, an attacker could bypass a proxy route rule by sending percent-encoded path traversal (..%2f) in the URL, causi | May 13, 2026 | 5.3 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nitro.
Media articles that mention a CVE ID that affects a product developed by Nitro — matched by CVE ID, not by vendor name.