<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Apache HTTP Server (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/apache-http-server.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/apache-http-server-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Apache HTTP Server (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:52 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-28780 – Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28780</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28780</guid>
    <pubDate>Tue, 05 May 2026 22:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-28780</strong></p>
  <p>Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28780">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-29168 – Allocation of Resources Without Limits or Throttling vulnerability in Apache HTT...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-29168</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-29168</guid>
    <pubDate>Tue, 05 May 2026 14:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-29168</strong></p>
  <p>Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's  mod_md via OCSP response data.  This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-29168">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-29169 – A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-29169</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-29169</guid>
    <pubDate>Mon, 04 May 2026 15:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-29169</strong></p>
  <p>A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav or mod_dav_fs.  The only known use-case for mod_dav_lock was mod_dav_svn from Apache Subversion earlier than version 1.2.0.  Users are recommended to upgrade to version 2.4.66, which fixes this issue,…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-29169">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23918 – Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23918</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23918</guid>
    <pubDate>Mon, 04 May 2026 15:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23918</strong></p>
  <p>Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.  This issue affects Apache HTTP Server: 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23918">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34059 – Buffer Over-read vulnerability in Apache HTTP Server.

This issue affects Apache...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34059</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34059</guid>
    <pubDate>Mon, 04 May 2026 13:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34059</strong></p>
  <p>Buffer Over-read vulnerability in Apache HTTP Server.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34059">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-21962 – Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21962</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21962</guid>
    <pubDate>Tue, 20 Jan 2026 22:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-21962</strong></p>
  <p>Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS).  Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21962">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-58098 – Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58098</guid>
    <pubDate>Fri, 05 Dec 2025 14:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58098</strong></p>
  <p>Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives.  This issue affects Apache HTTP Server before 2.4.66.  Users are recommended to upgrade to version 2.4.66, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59775 – Server-Side Request Forgery (SSRF) vulnerability 

 in Apache HTTP Server on Win...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59775</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59775</strong></p>
  <p>Server-Side Request Forgery (SSRF) vulnerability    in Apache HTTP Server on Windows   with AllowEncodedSlashes On and MergeSlashes Off  allows to potentially leak NTLM  hashes to a malicious server via SSRF and malicious requests or content  Users are recommended to upgrade to version 2.4.66, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55753 – An integer overflow in the case of failed ACME certificate renewal leads, after ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55753</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55753</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55753</strong></p>
  <p>An integer overflow in the case of failed ACME certificate renewal leads, after a number of failures (~30 days in default configurations), to the backoff timer becoming 0. Attempts to renew the certificate then are repeated without delays until it succeeds.  This issue affects Apache HTTP Server: from 2.4.30 before 2.4.66.   Users are recommended to upgrade to version 2.4.66, which fixes the issu…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55753">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53020 – Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53020</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53020</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53020</strong></p>
  <p>Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server.  This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63.  Users are recommended to upgrade to version 2.4.64, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53020">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49812 – In some mod_ssl configurations on Apache HTTP Server versions through to 2.4.63,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49812</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49812</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49812</strong></p>
  <p>In some mod_ssl configurations on Apache HTTP Server versions through to 2.4.63, an HTTP desynchronisation attack allows a man-in-the-middle attacker to hijack an HTTP session via a TLS upgrade.  Only configurations using "SSLEngine optional" to enable TLS upgrades are affected. Users are recommended to upgrade to version 2.4.64, which removes support for TLS upgrade.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49812">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49630 – In certain proxy configurations, a denial of service attack against Apache HTTP ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49630</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49630</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49630</strong></p>
  <p>In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2.  Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-617</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49630">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-23048 – In some mod_ssl configurations on Apache HTTP Server 2.4.35 through to 2.4.63, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23048</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23048</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-23048</strong></p>
  <p>In some mod_ssl configurations on Apache HTTP Server 2.4.35 through to 2.4.63, an access control bypass by trusted clients is possible using TLS 1.3 session resumption.  Configurations are affected when mod_ssl is configured for multiple virtual hosts, with each restricted to a different set of trusted client certificates (for example with a different SSLCACertificateFile/Path setting). In such a…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23048">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-47252 – Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47252</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47252</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-47252</strong></p>
  <p>Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4.63 and earlier allows an untrusted SSL/TLS client to insert escape characters into log files in some configurations.  In a logging configuration where CustomLog is used with "%{varname}x" or "%{varname}c" to log variables provided by mod_ssl such as SSL_TLS_SNI, no escaping is performed by either mod_log_config or mo…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-150</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47252">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43394 – Server-Side Request Forgery (SSRF) in Apache HTTP Server on Windows allows to po...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43394</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43394</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43394</strong></p>
  <p>Server-Side Request Forgery (SSRF) in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via  mod_rewrite or apache expressions that pass unvalidated request input.  This issue affects Apache HTTP Server: from 2.4.0 through 2.4.63.  Note:  The Apache HTTP Server Project will be setting a higher bar for accepting vulnerability reports regarding SSRF via UNC…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43394">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43204 – SSRF in Apache HTTP Server with mod_proxy loaded allows an attacker to send outb...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43204</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43204</strong></p>
  <p>SSRF in Apache HTTP Server with mod_proxy loaded allows an attacker to send outbound proxy requests to a URL controlled by the attacker.  Requires an unlikely configuration where mod_headers is configured to modify the Content-Type request or response header with a value provided in the HTTP request.  Users are recommended to upgrade to version 2.4.64 which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-42516 – HTTP response splitting in the core of Apache HTTP Server allows an attacker who...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-42516</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-42516</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-42516</strong></p>
  <p>HTTP response splitting in the core of Apache HTTP Server allows an attacker who can manipulate the Content-Type response headers of applications hosted or proxied by the server can split the HTTP response.  This vulnerability was described as CVE-2023-38709 but the patch included in Apache HTTP Server 2.4.59 did not address the issue.  Users are recommended to upgrade to version 2.4.64, which fi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-42516">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-45623 – D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45623</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45623</guid>
    <pubDate>Mon, 02 Sep 2024 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-45623</strong></p>
  <p>D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the ATP binary that handles PHP HTTP GET requests for the Apache HTTP Server (httpd). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45623">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-40898 – SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40898</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40898</guid>
    <pubDate>Thu, 18 Jul 2024 10:15:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-40898</strong></p>
  <p>SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests.  Users are recommended to upgrade to version 2.4.62 which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40898">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-39573 – Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39573</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39573</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-39573</strong></p>
  <p>Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39573">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38477 – null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38477</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38477</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38477</strong></p>
  <p>null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38477">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38476 – Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38476</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38476</strong></p>
  <p>Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend applications whose response headers are malicious or exploitable.  Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38475 – Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38475</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38475</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38475</strong></p>
  <p>Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure.   Substitutions in server context that use a backreferences or variables as the first segment of the s…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38475">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38474 – Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38474</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38474</strong></p>
  <p>Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the configuration but not directly reachable by any URL or source disclosure of scripts meant to only to be executed as CGI.  Users are recommended to upgrade to version 2.4.60, which fixes this issue.  Some RewriteRules that capture and substitute uns…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38473 – Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38473</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38473</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38473</strong></p>
  <p>Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38473">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38472 – SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38472</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38472</strong></p>
  <p>SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content  Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-38709 – Faulty input validation in the core of Apache allows malicious or exploitable ba...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38709</guid>
    <pubDate>Thu, 04 Apr 2024 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-38709</strong></p>
  <p>Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses.  This issue affects Apache HTTP Server: through 2.4.58.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-1713 – Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-1713</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-1713</guid>
    <pubDate>Wed, 01 Nov 2023 10:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-1713</strong></p>
  <p>Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagram.php in Bitrix24 22.0.300 hosted on Apache HTTP Server allows remote authenticated attackers to execute arbitrary code via uploading a crafted ".htaccess" file.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-1713">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-43622 – An attacker, opening a HTTP/2 connection with an initial window size of 0, was a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-43622</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-43622</guid>
    <pubDate>Mon, 23 Oct 2023 07:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-43622</strong></p>
  <p>An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resources in the server, similar to the well known "slow loris" attack pattern. This has been fixed in version 2.4.58, so that such connection are terminated properly after the configured connection timeou…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-43622">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31122 – Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31122</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31122</guid>
    <pubDate>Mon, 23 Oct 2023 07:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31122</strong></p>
  <p>Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31122">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-5329 – GIGAPOD file servers (Appliance model and Software model) provide two web interf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-5329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-5329</guid>
    <pubDate>Fri, 08 Sep 2023 03:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-5329</strong></p>
  <p>GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operation, and 8001/tcp for administrative operation. 8001/tcp is served by a version of Apache HTTP server containing a flaw in handling HTTP requests (CVE-2011-3192), which may lead to a denial-of-service (DoS) condition.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-5329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-19791 – In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19791</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19791</guid>
    <pubDate>Mon, 29 May 2023 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-19791</strong></p>
  <p>In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server configuration does not properly restrict access to SOAP/REST endpoints (when some LemonLDAP::NG setup options are used). For example, an attacker can insert index.fcgi/index.fcgi into a URL to bypass a Require directive.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19791">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-27522 – HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-27522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-27522</guid>
    <pubDate>Tue, 07 Mar 2023 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-27522</strong></p>
  <p>HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55.  Special characters in the origin response header can truncate/split the response forwarded to the client.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-27522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-25690 – Some mod_proxy configurations on Apache HTTP Server versions 2.4.0 through 2.4.5...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-25690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-25690</guid>
    <pubDate>Tue, 07 Mar 2023 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-25690</strong></p>
  <p>Some mod_proxy configurations on Apache HTTP Server versions 2.4.0 through 2.4.55 allow a HTTP Request Smuggling attack.     Configurations are affected when mod_proxy is enabled along with some form of RewriteRule  or ProxyPassMatch in which a non-specific pattern matches  some portion of the user-supplied request-target (URL) data and is then  re-inserted into the proxied request-target using v…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-25690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-36760 – Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-36760</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-36760</guid>
    <pubDate>Tue, 17 Jan 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-36760</strong></p>
  <p>Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to.  This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.54 and prior versions.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-36760">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-20001 – A carefully crafted If: request header can cause a memory read, or write of a si...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-20001</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-20001</guid>
    <pubDate>Tue, 17 Jan 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-20001</strong></p>
  <p>A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash.  This issue affects Apache HTTP Server 2.4.54 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-20001">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-46157 – Akeneo PIM is an open source Product Information Management (PIM). Akeneo PIM Co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-46157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-46157</guid>
    <pubDate>Fri, 09 Dec 2022 21:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-46157</strong></p>
  <p>Akeneo PIM is an open source Product Information Management (PIM). Akeneo PIM Community Edition versions before v5.0.119 and v6.0.53 allows remote authenticated users to execute arbitrary PHP code on the server by uploading a crafted image. Akeneo PIM Community Edition after the versions aforementioned provides patched Apache HTTP server configuration file, for docker setup and in documentation s…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-46157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-31813 – Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-31813</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-31813</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-31813</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the origin server/application.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-348</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-31813">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-30556 – Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30556</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30556</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-30556</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling r:wsread() that point past the end of the storage allocated for the buffer.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30556">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-30522 – If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30522</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-30522</strong></p>
  <p>If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-29404 – In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29404</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29404</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-29404</strong></p>
  <p>In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script that calls r:parsebody(0) may cause a denial of service due to no default limit on possible input size.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29404">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-28615 – Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28615</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28615</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-28615</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a read beyond bounds in ap_strcmp_match() when provided with an extremely large input buffer. While no code distributed with the server can be coerced into such a call, third-party modules or lua scripts that use ap_strcmp_match() may hypothetically be affected.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28615">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-26377 – Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-26377</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-26377</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-26377</strong></p>
  <p>Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.53 and prior versions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-26377">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-23943 – Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-23943</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-23943</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-23943</strong></p>
  <p>Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-23943">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-22721 – If LimitXMLRequestBody is set to allow request bodies larger than 350MB (default...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22721</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-22721</strong></p>
  <p>If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apache HTTP Server 2.4.52 and earlier.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-22720 – Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when err...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22720</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22720</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-22720</strong></p>
  <p>Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22720">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-22719 – A carefully crafted request body can cause a read to a random memory area which ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22719</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22719</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-22719</strong></p>
  <p>A carefully crafted request body can cause a read to a random memory area which could cause the process to crash. This issue affects Apache HTTP Server 2.4.52 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-665</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22719">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-44790 – A carefully crafted request body can cause a buffer overflow in the mod_lua mult...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-44790</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-44790</guid>
    <pubDate>Mon, 20 Dec 2021 12:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-44790</strong></p>
  <p>A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerabilty though it might be possible to craft one. This issue affects Apache HTTP Server 2.4.51 and earlier.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-44790">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-44224 – A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-44224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-44224</guid>
    <pubDate>Mon, 20 Dec 2021 12:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-44224</strong></p>
  <p>A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix Domain Socket endpoint (Server Side Request Forgery). This issue affects Apache HTTP Server 2.4.7 up to 2.4.51 (included).</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-44224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-42013 – It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-42013</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-42013</guid>
    <pubDate>Thu, 07 Oct 2021 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-42013</strong></p>
  <p>It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for th…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-42013">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-41773 – A flaw was found in a change made to path normalization in Apache HTTP Server 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41773</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41773</guid>
    <pubDate>Tue, 05 Oct 2021 09:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-41773</strong></p>
  <p>A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for these al…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41773">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-40438 – A crafted request uri-path can cause mod_proxy to forward the request to an orig...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-40438</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-40438</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-40438</strong></p>
  <p>A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-40438">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-39275 – ap_escape_quotes() may write beyond the end of a buffer when given malicious inp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-39275</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-39275</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-39275</strong></p>
  <p>ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-39275">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36160 – A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36160</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36160</strong></p>
  <p>A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue affects Apache HTTP Server versions 2.4.30 to 2.4.48 (inclusive).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-34798 – Malformed requests may cause the server to dereference a NULL pointer. This issu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-34798</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-34798</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-34798</strong></p>
  <p>Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-34798">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-33193 – A crafted method sent through HTTP/2 will bypass validation and be forwarded by ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33193</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33193</guid>
    <pubDate>Mon, 16 Aug 2021 08:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-33193</strong></p>
  <p>A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33193">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-31618 – Apache HTTP Server protocol handler for the HTTP/2 protocol checks received requ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31618</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31618</guid>
    <pubDate>Tue, 15 Jun 2021 09:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-31618</strong></p>
  <p>Apache HTTP Server protocol handler for the HTTP/2 protocol checks received request headers against the size limitations as configured for the server and used for the HTTP/1 protocol as well. On violation of these restrictions and HTTP response is sent to the client with a status code indicating why the request was rejected. This rejection response was not fully initialised in the HTTP/2 protocol…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31618">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-26691 – In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-26691</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-26691</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-26691</strong></p>
  <p>In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-26691">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-26690 – Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header ha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-26690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-26690</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-26690</strong></p>
  <p>Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-26690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35452 – Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35452</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35452</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35452</strong></p>
  <p>Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byt…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35452">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-13950 – Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-13950</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-13950</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-13950</strong></p>
  <p>Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using both Content-Length and Transfer-Encoding headers, leading to a Denial of Service</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-13950">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-29641 – Directus 8 before 8.8.2 allows remote authenticated users to execute arbitrary c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-29641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-29641</guid>
    <pubDate>Wed, 07 Apr 2021 22:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-29641</strong></p>
  <p>Directus 8 before 8.8.2 allows remote authenticated users to execute arbitrary code because file-upload permissions include the ability to upload a .php file to the main upload directory and/or upload a .php file and a .htaccess file to a subdirectory. Exploitation succeeds only for certain installations with the Apache HTTP Server and the local-storage driver (e.g., when the product was obtained…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-29641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-9490 – Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-9490</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-9490</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-9490</strong></p>
  <p>Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-9490">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-11993 – Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11993</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11993</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-11993</strong></p>
  <p>Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for the HTTP/2 module and on certain traffic edge patterns, logging statements were made on the wrong connection, causing concurrent use of memory pools. Configuring the LogLevel of mod_http2 above "info" will mitigate this vulnerability for unpatched servers.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11993">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-11984 – Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11984</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11984</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-11984</strong></p>
  <p>Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11984">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-12442 – Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-12442</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-12442</guid>
    <pubDate>Tue, 28 Apr 2020 22:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-12442</strong></p>
  <p>Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-12442">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-17104 – In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-17104</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-17104</guid>
    <pubDate>Tue, 08 Oct 2019 13:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-17104</strong></p>
  <p>In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP Server does not protect against theft because the HTTPOnly flag is not set.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-565</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-17104">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10097 – In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10097</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10097</guid>
    <pubDate>Thu, 26 Sep 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10097</strong></p>
  <p>In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol, a specially crafted PROXY header could trigger a stack buffer overflow or NULL pointer deference. This vulnerability could only be triggered by a trusted proxy and not by untrusted HTTP clients.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10097">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-10082 – In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 sess...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10082</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10082</guid>
    <pubDate>Thu, 26 Sep 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-10082</strong></p>
  <p>In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10082">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-13980 – In Directus 7 API through 2.3.0, uploading of PHP files is blocked only when the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-13980</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-13980</guid>
    <pubDate>Fri, 19 Jul 2019 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-13980</strong></p>
  <p>In Directus 7 API through 2.3.0, uploading of PHP files is blocked only when the Apache HTTP Server is used, leading to uploads/_/originals remote code execution with nginx.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13980">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-9699 – The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory ind...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-9699</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-9699</guid>
    <pubDate>Mon, 24 Jun 2019 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-9699</strong></p>
  <p>The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthenticated attackers through this HTTP server.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-9699">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-11231 – An issue was discovered in GetSimple CMS through 3.3.15. insufficient input sani...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-11231</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-11231</guid>
    <pubDate>Wed, 22 May 2019 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-11231</strong></p>
  <p>An issue was discovered in GetSimple CMS through 3.3.15. insufficient input sanitation in the theme-edit.php file allows upload of files with arbitrary content (PHP code, for example). This vulnerability is triggered by an authenticated user; however, authentication can be bypassed. According to the official documentation for installation step 10, an admin is required to upload all the files, inc…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-11231">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-0211 – In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-0211</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-0211</guid>
    <pubDate>Mon, 08 Apr 2019 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-0211</strong></p>
  <p>In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-0211">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-0217 – In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-0217</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-0217</guid>
    <pubDate>Mon, 08 Apr 2019 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-0217</strong></p>
  <p>In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-0217">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-0215 – In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when usin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-0215</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-0215</guid>
    <pubDate>Mon, 08 Apr 2019 20:29:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-0215</strong></p>
  <p>In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-0215">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-0190 – A bug exists in the way mod_ssl handled client renegotiations. A remote attacker...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-0190</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-0190</guid>
    <pubDate>Wed, 30 Jan 2019 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-0190</strong></p>
  <p>A bug exists in the way mod_ssl handled client renegotiations. A remote attacker could send a carefully crafted request that would cause mod_ssl to enter a loop leading to a denial of service. This bug can be only triggered with Apache HTTP Server version 2.4.37 when using OpenSSL version 1.1.1 or later, due to an interaction in changes to handling of renegotiation attempts.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-0190">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-17199 – In Apache HTTP Server 2.4 release 2.4.37 and prior, mod_session checks the sessi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-17199</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-17199</guid>
    <pubDate>Wed, 30 Jan 2019 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-17199</strong></p>
  <p>In Apache HTTP Server 2.4 release 2.4.37 and prior, mod_session checks the session expiry time before decoding the session. This causes session expiry time to be ignored for mod_session_cookie sessions since the expiry time is loaded when the session is decoded.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-17199">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-18864 – Loadbalancer.org Enterprise VA MAX before 8.3.3 has XSS because Apache HTTP Serv...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-18864</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-18864</guid>
    <pubDate>Tue, 20 Nov 2018 19:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-18864</strong></p>
  <p>Loadbalancer.org Enterprise VA MAX before 8.3.3 has XSS because Apache HTTP Server logs are displayed.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-18864">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2011-2767 – mod_perl 2.0 through 2.0.10 allows attackers to execute arbitrary Perl code by p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-2767</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-2767</guid>
    <pubDate>Sun, 26 Aug 2018 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2011-2767</strong></p>
  <p>mod_perl 2.0 through 2.0.10 allows attackers to execute arbitrary Perl code by placing it in a user-owned .htaccess file, because (contrary to the documentation) there is no configuration option that permits Perl code for the administrator's control of HTTP request processing without also permitting unprivileged users to run Perl code in the context of the user account that runs Apache HTTP Serve…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-2767">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-8011 – By specially crafting HTTP requests, the mod_md challenge handler would derefere...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-8011</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-8011</guid>
    <pubDate>Wed, 18 Jul 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-8011</strong></p>
  <p>By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-8011">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1333 – By specially crafting HTTP/2 requests, workers would be allocated 60 seconds lon...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1333</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1333</guid>
    <pubDate>Mon, 18 Jun 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1333</strong></p>
  <p>By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1333">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-9157 – An issue was discovered on AXIS M1033-W (IP camera) Firmware version 5.40.5.1 de...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-9157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-9157</guid>
    <pubDate>Sun, 01 Apr 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-9157</strong></p>
  <p>An issue was discovered on AXIS M1033-W (IP camera) Firmware version 5.40.5.1 devices. The upload web page doesn't verify the file type, and an attacker can upload a webshell by making a fileUpload.shtml request for a custom .shtml file, which is interpreted by the Apache HTTP Server mod_include module with "<!--#exec cmd=" support. The file needs to include a specific string to meet the internal…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-9157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-9156 – An issue was discovered on AXIS P1354 (IP camera) Firmware version 5.90.1.1 devi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-9156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-9156</guid>
    <pubDate>Sun, 01 Apr 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-9156</strong></p>
  <p>An issue was discovered on AXIS P1354 (IP camera) Firmware version 5.90.1.1 devices. The upload web page doesn't verify the file type, and an attacker can upload a webshell by making a fileUpload.shtml request for a custom .shtml file, which is interpreted by the Apache HTTP Server mod_include module with "<!--#exec cmd=" support. The file needs to include a specific string to meet the internal s…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-9156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1303 – A specially crafted HTTP request header could have crashed the Apache HTTP Serve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1303</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1303</guid>
    <pubDate>Mon, 26 Mar 2018 15:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1303</strong></p>
  <p>A specially crafted HTTP request header could have crashed the Apache HTTP Server prior to version 2.4.30 due to an out of bound read while preparing data to be cached in shared memory. It could be used as a Denial of Service attack against users of mod_cache_socache. The vulnerability is considered as low risk since mod_cache_socache is not widely used, mod_cache_disk is not concerned by this vu…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1303">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-17671 – vBulletin through 5.3.x on Windows allows remote PHP code execution because a re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-17671</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-17671</guid>
    <pubDate>Thu, 14 Dec 2017 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-17671</strong></p>
  <p>vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an unauthenticated request that can include directory traversal sequences to specify an arbitrary pathname, and because ../ traversal is blocked but ..\ traversal is not blocked. For example, an attacker can make an invalid HTTP request containing PHP code, and then make an index.php?…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-17671">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-9798 – Apache httpd allows remote attackers to read secret data from process memory if ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-9798</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-9798</guid>
    <pubDate>Mon, 18 Sep 2017 15:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-9798</strong></p>
  <p>Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user's .htaccess file, or if httpd.conf has certain misconfigurations, aka Optionsbleed. This affects the Apache HTTP Server through 2.2.34 and 2.4.x through 2.4.27. The attacker sends an unauthenticated OPTIONS HTTP request when attempting to read secret data. This is a use-after-f…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-9798">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-8743 – Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-8743</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-8743</guid>
    <pubDate>Thu, 27 Jul 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-8743</strong></p>
  <p>Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security concern when httpd participates in any chain of proxies or interacts with back-end application servers, either through mod_proxy or using conventional CGI mechanisms, and may result i…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-8743">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-2161 – In Apache HTTP Server versions 2.4.0 to 2.4.23, malicious input to mod_auth_dige...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-2161</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-2161</guid>
    <pubDate>Thu, 27 Jul 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-2161</strong></p>
  <p>In Apache HTTP Server versions 2.4.0 to 2.4.23, malicious input to mod_auth_digest can cause the server to crash, and each instance continues to crash even for subsequently valid requests.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-823</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-2161">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-0736 – In Apache HTTP Server versions 2.4.0 to 2.4.23, mod_session_crypto was encryptin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-0736</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-0736</guid>
    <pubDate>Thu, 27 Jul 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-0736</strong></p>
  <p>In Apache HTTP Server versions 2.4.0 to 2.4.23, mod_session_crypto was encrypting its data/cookie using the configured ciphers with possibly either CBC or ECB modes of operation (AES256-CBC by default), hence no selectable or builtin authenticated encryption. This made it vulnerable to padding oracle attacks, particularly with CBC.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-310</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-0736">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-7659 – A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-7659</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-7659</guid>
    <pubDate>Wed, 26 Jul 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-7659</strong></p>
  <p>A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NULL pointer and crash the server process.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-7659">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-6413 – The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6413</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6413</guid>
    <pubDate>Thu, 02 Mar 2017 06:59:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-6413</strong></p>
  <p>The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_openidc) module before 2.1.6 for the Apache HTTP Server does not skip OIDC_CLAIM_ and OIDCAuthNHeader headers in an "AuthType oauth20" configuration, which allows remote attackers to bypass authentication via crafted HTTP traffic.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6413">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-6062 – The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6062</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6062</guid>
    <pubDate>Thu, 02 Mar 2017 06:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-6062</strong></p>
  <p>The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_openidc) module before 2.1.5 for the Apache HTTP Server does not skip OIDC_CLAIM_ and OIDCAuthNHeader headers in an "OIDCUnAuthAction pass" configuration, which allows remote attackers to bypass authentication via crafted HTTP traffic.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6062">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-8994 – An issue was discovered in PHP 5.x and 7.x, when the configuration uses apache2h...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-8994</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-8994</guid>
    <pubDate>Thu, 02 Mar 2017 06:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-8994</strong></p>
  <p>An issue was discovered in PHP 5.x and 7.x, when the configuration uses apache2handler/mod_php or php-fpm with OpCache enabled. With 5.x after 5.6.28 or 7.x after 7.0.13, the issue is resolved in a non-default configuration with the opcache.validate_permission=1 setting. The vulnerability details are as follows. In PHP SAPIs where PHP interpreters share a common parent process, Zend OpCache creat…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-8994">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-10140 – Information disclosure and authentication bypass vulnerability exists in the Apa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10140</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10140</guid>
    <pubDate>Fri, 13 Jan 2017 09:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-10140</strong></p>
  <p>Information disclosure and authentication bypass vulnerability exists in the Apache HTTP Server configuration bundled with ZoneMinder v1.30 and v1.29, which allows a remote unauthenticated attacker to browse all directories in the web root, e.g., a remote unauthenticated attacker can view all CCTV images on the server via the /events URI.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10140">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-8740 – The mod_http2 module in the Apache HTTP Server 2.4.17 through 2.4.23, when the P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-8740</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-8740</guid>
    <pubDate>Mon, 05 Dec 2016 19:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-8740</strong></p>
  <p>The mod_http2 module in the Apache HTTP Server 2.4.17 through 2.4.23, when the Protocols configuration includes h2 or h2c, does not restrict request-header length, which allows remote attackers to cause a denial of service (memory consumption) via crafted CONTINUATION frames in an HTTP/2 request.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-8740">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-3110 – mod_cluster, as used in Red Hat JBoss Web Server 2.1, allows remote attackers to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3110</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3110</guid>
    <pubDate>Mon, 26 Sep 2016 14:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-3110</strong></p>
  <p>mod_cluster, as used in Red Hat JBoss Web Server 2.1, allows remote attackers to cause a denial of service (Apache http server crash) via an MCMP message containing a series of = (equals) characters after a legitimate element.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3110">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2016-4694 – The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 fol...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-4694</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-4694</guid>
    <pubDate>Sun, 25 Sep 2016 10:59:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2016-4694</strong></p>
  <p>The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted CGI client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP reques…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-4694">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-5387 – The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and theref...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-5387</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-5387</guid>
    <pubDate>Tue, 19 Jul 2016 02:00:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-5387</strong></p>
  <p>The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue.  NOTE: the vendo…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-5387">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-4979 – The Apache HTTP Server 2.4.18 through 2.4.20, when mod_http2 and mod_ssl are ena...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-4979</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-4979</guid>
    <pubDate>Wed, 06 Jul 2016 14:59:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-4979</strong></p>
  <p>The Apache HTTP Server 2.4.18 through 2.4.20, when mod_http2 and mod_ssl are enabled, does not properly recognize the "SSLVerifyClient require" directive for HTTP/2 request authorization, which allows remote attackers to bypass intended access restrictions by leveraging the ability to send multiple requests over a single connection and aborting a renegotiation.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-4979">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2014-8567 – The mod_auth_mellon module before 0.8.1 allows remote attackers to cause a denia...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-8567</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-8567</guid>
    <pubDate>Fri, 14 Nov 2014 15:59:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2014-8567</strong></p>
  <p>The mod_auth_mellon module before 0.8.1 allows remote attackers to cause a denial of service (Apache HTTP server crash) via a crafted logout request that triggers a read of uninitialized data.</p>
  <p><strong>CVSS:</strong> 9.4 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-8567">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
