• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

Issue Urgent security issue in NGINX/php-fpm

Hello,
I've seen this on the Nextcloud blog. Is there a Nginx and PHP upgrade planned concerning this issue ?

Urgent security issue in NGINX/php-fpm – Nextcloud

Thank you

Thanks. Good article. But it's not "hack scare" - imho. Have you read CVE article ( PHP-FPM/Nginx Vulnerability - CVE-2019-11043 | Liquid Web) - certain preconditions has to be met for this to work. Plesk updates Third party components quite fast. In this case they need to update:

PHP 7.3 from version 7.3.10. to 7.3.11 and
PHP 7.2 from version 7.2.23. to 7.2.24 and this problems should be resolved as far as preconditions are met.

I am pretty we can count on them updating PHP version sometimes next week.
 
Last edited:
Back
Top