It was discovered that nginx contains a security issue in the ngxmailsmtp_module which might allow an attacker to cause buffer over-read potentially resulting in sensitive information leak in a HTTP request to the authentication server (CVE-2025-53859).