Update your nginx instances

cross-posted from: https://lemmy.world/post/46851448


CVE - Common Vulnerabilities and Exposures system
RCE - Remote Code Execution
PoC - Proof of Concept

you are viewing a single comment's thread
view the rest of the comments
[–] 11 points 4 months ago (4 children)

All my publicly accessible servers update every 6 hours and reboot after whenever they need to. It's rare I need to step in and fix something. I checked a few hours ago and I'm not at risk.

not the flex you think it is.

didn't npm have a worm problem a few days ago?

  • source
  • parent
  • hideshow 4 child comments
  • [–] 5 points 4 months ago (3 children)

    Yep. I wasn't affected thankfully. Didn't realise I was flexing, sorry. Just happy most of my stack is automated and it's quite low maintenance at this point.

    Where do I draw the line then? Serious question. If updating every couple hours is bad, then what's safe?

  • source
  • parent
  • hideshow 3 child comments