nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)
No PoCs from references.
- https://github.com/addisonburkett/cve_query_module
- https://github.com/lukeber4/usn-search