Angie and Angie PRO updated to version 1.11.5#
Maintenance releases of Angie and Angie PRO 1.11.5 have been published,
porting fixes for five vulnerabilities discovered in nginx. The
vulnerabilities affect the rewrite, ssl_ocsp,
scgi_pass, uwsgi_pass, and charset_map directives,
as well as HTTP/3 request handling.
Maintenance releases of Angie and its commercial version Angie PRO — 1.11.5 — have been published, porting fixes for a number of vulnerabilities discovered in nginx.
Five vulnerabilities have been fixed: CVE-2026-42945, CVE-2026-40701, CVE-2026-40460, CVE-2026-42946, and CVE-2026-42934.
A sixth vulnerability found in nginx, CVE-2026-42926, does not affect the released versions of Angie.
The vulnerabilities affect the rewrite, ssl_ocsp,
scgi_pass, uwsgi_pass, and charset_map directives,
as well as HTTP/3 request handling.
More details about the changes:
Have a great day!