<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Apache HTTP Server</title>
  <link>https://cvedaily.com/pages/tags/apache-http-server.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/apache-http-server.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Apache HTTP Server</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:52 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-28780 – Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28780</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28780</guid>
    <pubDate>Tue, 05 May 2026 22:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-28780</strong></p>
  <p>Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28780">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-29168 – Allocation of Resources Without Limits or Throttling vulnerability in Apache HTT...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-29168</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-29168</guid>
    <pubDate>Tue, 05 May 2026 14:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-29168</strong></p>
  <p>Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's  mod_md via OCSP response data.  This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-29168">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33523 – HTTP response splitting vulnerability in multiple Apache HTTP Server modules wit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33523</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33523</guid>
    <pubDate>Mon, 04 May 2026 15:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33523</strong></p>
  <p>HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers.  This issue affects Apache HTTP Server: from through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-443</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33523">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33007 – A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33007</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33007</guid>
    <pubDate>Mon, 04 May 2026 15:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33007</strong></p>
  <p>A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration.  Users are recommended to upgrade to version 2.4.67, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33007">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33006 – A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a by...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33006</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33006</guid>
    <pubDate>Mon, 04 May 2026 15:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33006</strong></p>
  <p>A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker.  Users are recommended to upgrade to version 2.4.67, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-208</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33006">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-29169 – A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-29169</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-29169</guid>
    <pubDate>Mon, 04 May 2026 15:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-29169</strong></p>
  <p>A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav or mod_dav_fs.  The only known use-case for mod_dav_lock was mod_dav_svn from Apache Subversion earlier than version 1.2.0.  Users are recommended to upgrade to version 2.4.66, which fixes this issue,…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-29169">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23918 – Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23918</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23918</guid>
    <pubDate>Mon, 04 May 2026 15:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23918</strong></p>
  <p>Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.  This issue affects Apache HTTP Server: 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23918">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-34032 – Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Serve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34032</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34032</guid>
    <pubDate>Mon, 04 May 2026 14:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-34032</strong></p>
  <p>Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34032">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33857 – Out-of-bounds Read vulnerability in mod_proxy_ajp of 

Apache HTTP Server.

This...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33857</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33857</guid>
    <pubDate>Mon, 04 May 2026 14:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33857</strong></p>
  <p>Out-of-bounds Read vulnerability in mod_proxy_ajp of   Apache HTTP Server.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33857">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34059 – Buffer Over-read vulnerability in Apache HTTP Server.

This issue affects Apache...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34059</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34059</guid>
    <pubDate>Mon, 04 May 2026 13:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34059</strong></p>
  <p>Buffer Over-read vulnerability in Apache HTTP Server.  This issue affects Apache HTTP Server: through 2.4.66.  Users are recommended to upgrade to version 2.4.67, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34059">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-21962 – Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21962</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21962</guid>
    <pubDate>Tue, 20 Jan 2026 22:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-21962</strong></p>
  <p>Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS).  Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21962">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-58098 – Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58098</guid>
    <pubDate>Fri, 05 Dec 2025 14:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58098</strong></p>
  <p>Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives.  This issue affects Apache HTTP Server before 2.4.66.  Users are recommended to upgrade to version 2.4.66, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-66200 – mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTT...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66200</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-66200</strong></p>
  <p>mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTTP Server. Users with access to use the RequestHeader directive in htaccess can cause some CGI scripts to run under an unexpected userid.  This issue affects Apache HTTP Server: from 2.4.7 through 2.4.65.  Users are recommended to upgrade to version 2.4.66, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-288</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-65082 – Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in A...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65082</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65082</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-65082</strong></p>
  <p>Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs.  This issue affects Apache HTTP Server from 2.4.0 through 2.4.65.  Users are recommended to upgrade to version 2.4.66 which fixes the issue.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-150</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65082">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59775 – Server-Side Request Forgery (SSRF) vulnerability 

 in Apache HTTP Server on Win...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59775</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59775</strong></p>
  <p>Server-Side Request Forgery (SSRF) vulnerability    in Apache HTTP Server on Windows   with AllowEncodedSlashes On and MergeSlashes Off  allows to potentially leak NTLM  hashes to a malicious server via SSRF and malicious requests or content  Users are recommended to upgrade to version 2.4.66, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55753 – An integer overflow in the case of failed ACME certificate renewal leads, after ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55753</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55753</guid>
    <pubDate>Fri, 05 Dec 2025 11:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55753</strong></p>
  <p>An integer overflow in the case of failed ACME certificate renewal leads, after a number of failures (~30 days in default configurations), to the backoff timer becoming 0. Attempts to renew the certificate then are repeated without delays until it succeeds.  This issue affects Apache HTTP Server: from 2.4.30 before 2.4.66.   Users are recommended to upgrade to version 2.4.66, which fixes the issu…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55753">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-54090 – A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54090</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54090</guid>
    <pubDate>Wed, 23 Jul 2025 14:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-54090</strong></p>
  <p>A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests evaluating as "true".    Users are recommended to upgrade to version 2.4.65, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-253</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54090">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53020 – Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53020</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53020</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53020</strong></p>
  <p>Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server.  This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63.  Users are recommended to upgrade to version 2.4.64, which fixes the issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53020">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49812 – In some mod_ssl configurations on Apache HTTP Server versions through to 2.4.63,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49812</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49812</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49812</strong></p>
  <p>In some mod_ssl configurations on Apache HTTP Server versions through to 2.4.63, an HTTP desynchronisation attack allows a man-in-the-middle attacker to hijack an HTTP session via a TLS upgrade.  Only configurations using "SSLEngine optional" to enable TLS upgrades are affected. Users are recommended to upgrade to version 2.4.64, which removes support for TLS upgrade.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49812">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49630 – In certain proxy configurations, a denial of service attack against Apache HTTP ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49630</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49630</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49630</strong></p>
  <p>In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2.  Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-617</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49630">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-23048 – In some mod_ssl configurations on Apache HTTP Server 2.4.35 through to 2.4.63, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23048</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23048</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-23048</strong></p>
  <p>In some mod_ssl configurations on Apache HTTP Server 2.4.35 through to 2.4.63, an access control bypass by trusted clients is possible using TLS 1.3 session resumption.  Configurations are affected when mod_ssl is configured for multiple virtual hosts, with each restricted to a different set of trusted client certificates (for example with a different SSLCACertificateFile/Path setting). In such a…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23048">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-47252 – Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47252</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47252</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-47252</strong></p>
  <p>Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4.63 and earlier allows an untrusted SSL/TLS client to insert escape characters into log files in some configurations.  In a logging configuration where CustomLog is used with "%{varname}x" or "%{varname}c" to log variables provided by mod_ssl such as SSL_TLS_SNI, no escaping is performed by either mod_log_config or mo…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-150</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47252">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43394 – Server-Side Request Forgery (SSRF) in Apache HTTP Server on Windows allows to po...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43394</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43394</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43394</strong></p>
  <p>Server-Side Request Forgery (SSRF) in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via  mod_rewrite or apache expressions that pass unvalidated request input.  This issue affects Apache HTTP Server: from 2.4.0 through 2.4.63.  Note:  The Apache HTTP Server Project will be setting a higher bar for accepting vulnerability reports regarding SSRF via UNC…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43394">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43204 – SSRF in Apache HTTP Server with mod_proxy loaded allows an attacker to send outb...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43204</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43204</strong></p>
  <p>SSRF in Apache HTTP Server with mod_proxy loaded allows an attacker to send outbound proxy requests to a URL controlled by the attacker.  Requires an unlikely configuration where mod_headers is configured to modify the Content-Type request or response header with a value provided in the HTTP request.  Users are recommended to upgrade to version 2.4.64 which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-42516 – HTTP response splitting in the core of Apache HTTP Server allows an attacker who...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-42516</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-42516</guid>
    <pubDate>Thu, 10 Jul 2025 17:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-42516</strong></p>
  <p>HTTP response splitting in the core of Apache HTTP Server allows an attacker who can manipulate the Content-Type response headers of applications hosted or proxied by the server can split the HTTP response.  This vulnerability was described as CVE-2023-38709 but the patch included in Apache HTTP Server 2.4.59 did not address the issue.  Users are recommended to upgrade to version 2.4.64, which fi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-42516">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-45623 – D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45623</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45623</guid>
    <pubDate>Mon, 02 Sep 2024 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-45623</strong></p>
  <p>D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the ATP binary that handles PHP HTTP GET requests for the Apache HTTP Server (httpd). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45623">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-40898 – SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40898</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40898</guid>
    <pubDate>Thu, 18 Jul 2024 10:15:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-40898</strong></p>
  <p>SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests.  Users are recommended to upgrade to version 2.4.62 which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40898">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-40725 – A partial fix for  CVE-2024-39884 in the core of Apache HTTP Server 2.4.61 ignor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40725</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40725</guid>
    <pubDate>Thu, 18 Jul 2024 10:15:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-40725</strong></p>
  <p>A partial fix for  CVE-2024-39884 in the core of Apache HTTP Server 2.4.61 ignores some use of the legacy content-type based configuration of handlers. "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.  Users are recommended to upgrade…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40725">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-39884 – A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the le...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39884</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39884</guid>
    <pubDate>Thu, 04 Jul 2024 09:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-39884</strong></p>
  <p>A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.  Users are recommended to upgrade to version 2.4.61,…</p>
  <p><strong>CVSS:</strong> 6.2 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39884">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-39573 – Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39573</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39573</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-39573</strong></p>
  <p>Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39573">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38477 – null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38477</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38477</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38477</strong></p>
  <p>null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38477">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38476 – Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38476</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38476</strong></p>
  <p>Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend applications whose response headers are malicious or exploitable.  Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38475 – Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38475</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38475</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38475</strong></p>
  <p>Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure.   Substitutions in server context that use a backreferences or variables as the first segment of the s…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38475">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-38474 – Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38474</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-38474</strong></p>
  <p>Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the configuration but not directly reachable by any URL or source disclosure of scripts meant to only to be executed as CGI.  Users are recommended to upgrade to version 2.4.60, which fixes this issue.  Some RewriteRules that capture and substitute uns…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38473 – Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38473</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38473</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38473</strong></p>
  <p>Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are recommended to upgrade to version 2.4.60, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38473">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38472 – SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38472</guid>
    <pubDate>Mon, 01 Jul 2024 19:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38472</strong></p>
  <p>SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content  Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will have to configure new directive "UNCList" to allow access during request processing.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-24795 – HTTP Response splitting in multiple modules in Apache HTTP Server allows an atta...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-24795</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-24795</guid>
    <pubDate>Thu, 04 Apr 2024 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-24795</strong></p>
  <p>HTTP Response splitting in multiple modules in Apache HTTP Server allows an attacker that can inject malicious response headers into backend applications to cause an HTTP desynchronization attack.  Users are recommended to upgrade to version 2.4.59, which fixes this issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-113</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-24795">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-38709 – Faulty input validation in the core of Apache allows malicious or exploitable ba...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38709</guid>
    <pubDate>Thu, 04 Apr 2024 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-38709</strong></p>
  <p>Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses.  This issue affects Apache HTTP Server: through 2.4.58.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-1521 – The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored C...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-1521</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-1521</guid>
    <pubDate>Wed, 27 Mar 2024 07:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-1521</strong></p>
  <p>The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an SVGZ file uploaded via the Form widget in all versions up to, and including, 3.20.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will exec…</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1521">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-1713 – Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-1713</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-1713</guid>
    <pubDate>Wed, 01 Nov 2023 10:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-1713</strong></p>
  <p>Insecure temporary file creation in bitrix/modules/crm/lib/order/import/instagram.php in Bitrix24 22.0.300 hosted on Apache HTTP Server allows remote authenticated attackers to execute arbitrary code via uploading a crafted ".htaccess" file.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-1713">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-43622 – An attacker, opening a HTTP/2 connection with an initial window size of 0, was a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-43622</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-43622</guid>
    <pubDate>Mon, 23 Oct 2023 07:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-43622</strong></p>
  <p>An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resources in the server, similar to the well known "slow loris" attack pattern. This has been fixed in version 2.4.58, so that such connection are terminated properly after the configured connection timeou…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-43622">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31122 – Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31122</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31122</guid>
    <pubDate>Mon, 23 Oct 2023 07:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31122</strong></p>
  <p>Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31122">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-5329 – GIGAPOD file servers (Appliance model and Software model) provide two web interf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-5329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-5329</guid>
    <pubDate>Fri, 08 Sep 2023 03:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-5329</strong></p>
  <p>GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operation, and 8001/tcp for administrative operation. 8001/tcp is served by a version of Apache HTTP server containing a flaw in handling HTTP requests (CVE-2011-3192), which may lead to a denial-of-service (DoS) condition.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-5329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-19791 – In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19791</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19791</guid>
    <pubDate>Mon, 29 May 2023 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-19791</strong></p>
  <p>In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server configuration does not properly restrict access to SOAP/REST endpoints (when some LemonLDAP::NG setup options are used). For example, an attacker can insert index.fcgi/index.fcgi into a URL to bypass a Require directive.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19791">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-27522 – HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-27522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-27522</guid>
    <pubDate>Tue, 07 Mar 2023 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-27522</strong></p>
  <p>HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55.  Special characters in the origin response header can truncate/split the response forwarded to the client.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-27522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-25690 – Some mod_proxy configurations on Apache HTTP Server versions 2.4.0 through 2.4.5...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-25690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-25690</guid>
    <pubDate>Tue, 07 Mar 2023 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-25690</strong></p>
  <p>Some mod_proxy configurations on Apache HTTP Server versions 2.4.0 through 2.4.55 allow a HTTP Request Smuggling attack.     Configurations are affected when mod_proxy is enabled along with some form of RewriteRule  or ProxyPassMatch in which a non-specific pattern matches  some portion of the user-supplied request-target (URL) data and is then  re-inserted into the proxied request-target using v…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-25690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-37436 – Prior to Apache HTTP Server 2.4.55, a malicious backend can cause the response h...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-37436</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-37436</guid>
    <pubDate>Tue, 17 Jan 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-37436</strong></p>
  <p>Prior to Apache HTTP Server 2.4.55, a malicious backend can cause the response headers to be truncated early, resulting in some headers being incorporated into the response body. If the later headers have any security purpose, they will not be interpreted by the client.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-113</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-37436">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-36760 – Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-36760</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-36760</guid>
    <pubDate>Tue, 17 Jan 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-36760</strong></p>
  <p>Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to.  This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.54 and prior versions.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-36760">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-20001 – A carefully crafted If: request header can cause a memory read, or write of a si...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-20001</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-20001</guid>
    <pubDate>Tue, 17 Jan 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-20001</strong></p>
  <p>A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash.  This issue affects Apache HTTP Server 2.4.54 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-20001">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-46157 – Akeneo PIM is an open source Product Information Management (PIM). Akeneo PIM Co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-46157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-46157</guid>
    <pubDate>Fri, 09 Dec 2022 21:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-46157</strong></p>
  <p>Akeneo PIM is an open source Product Information Management (PIM). Akeneo PIM Community Edition versions before v5.0.119 and v6.0.53 allows remote authenticated users to execute arbitrary PHP code on the server by uploading a crafted image. Akeneo PIM Community Edition after the versions aforementioned provides patched Apache HTTP server configuration file, for docker setup and in documentation s…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-46157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-31813 – Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-31813</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-31813</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-31813</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the origin server/application.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-348</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-31813">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-30556 – Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30556</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30556</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-30556</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling r:wsread() that point past the end of the storage allocated for the buffer.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30556">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-30522 – If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30522</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-30522</strong></p>
  <p>If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-29404 – In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29404</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29404</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-29404</strong></p>
  <p>In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script that calls r:parsebody(0) may cause a denial of service due to no default limit on possible input size.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29404">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-28615 – Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28615</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28615</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-28615</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a read beyond bounds in ap_strcmp_match() when provided with an extremely large input buffer. While no code distributed with the server can be coerced into such a call, third-party modules or lua scripts that use ap_strcmp_match() may hypothetically be affected.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28615">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-28614 – The ap_rwrite() function in Apache HTTP Server 2.4.53 and earlier may read unint...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28614</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28614</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-28614</strong></p>
  <p>The ap_rwrite() function in Apache HTTP Server 2.4.53 and earlier may read unintended memory if an attacker can cause the server to reflect very large input using ap_rwrite() or ap_rputs(), such as with mod_luas r:puts() function. Modules compiled and distributed separately from Apache HTTP Server that use the 'ap_rputs' function and may pass it a very large (INT_MAX or larger) string must be com…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28614">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-28330 – Apache HTTP Server 2.4.53 and earlier on Windows may read beyond bounds when con...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28330</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28330</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-28330</strong></p>
  <p>Apache HTTP Server 2.4.53 and earlier on Windows may read beyond bounds when configured to process requests with the mod_isapi module.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28330">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-26377 – Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-26377</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-26377</guid>
    <pubDate>Thu, 09 Jun 2022 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-26377</strong></p>
  <p>Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.53 and prior versions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-26377">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-23943 – Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-23943</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-23943</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-23943</strong></p>
  <p>Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-23943">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-22721 – If LimitXMLRequestBody is set to allow request bodies larger than 350MB (default...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22721</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-22721</strong></p>
  <p>If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apache HTTP Server 2.4.52 and earlier.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-22720 – Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when err...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22720</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22720</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-22720</strong></p>
  <p>Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22720">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-22719 – A carefully crafted request body can cause a read to a random memory area which ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22719</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22719</guid>
    <pubDate>Mon, 14 Mar 2022 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-22719</strong></p>
  <p>A carefully crafted request body can cause a read to a random memory area which could cause the process to crash. This issue affects Apache HTTP Server 2.4.52 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-665</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22719">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-44790 – A carefully crafted request body can cause a buffer overflow in the mod_lua mult...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-44790</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-44790</guid>
    <pubDate>Mon, 20 Dec 2021 12:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-44790</strong></p>
  <p>A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerabilty though it might be possible to craft one. This issue affects Apache HTTP Server 2.4.51 and earlier.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-44790">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-44224 – A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-44224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-44224</guid>
    <pubDate>Mon, 20 Dec 2021 12:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-44224</strong></p>
  <p>A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix Domain Socket endpoint (Server Side Request Forgery). This issue affects Apache HTTP Server 2.4.7 up to 2.4.51 (included).</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-44224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-42013 – It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-42013</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-42013</guid>
    <pubDate>Thu, 07 Oct 2021 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-42013</strong></p>
  <p>It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for th…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-42013">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-41773 – A flaw was found in a change made to path normalization in Apache HTTP Server 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41773</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41773</guid>
    <pubDate>Tue, 05 Oct 2021 09:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-41773</strong></p>
  <p>A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for these al…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41773">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-40438 – A crafted request uri-path can cause mod_proxy to forward the request to an orig...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-40438</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-40438</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-40438</strong></p>
  <p>A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-40438">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-39275 – ap_escape_quotes() may write beyond the end of a buffer when given malicious inp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-39275</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-39275</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-39275</strong></p>
  <p>ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-39275">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36160 – A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36160</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36160</strong></p>
  <p>A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue affects Apache HTTP Server versions 2.4.30 to 2.4.48 (inclusive).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-34798 – Malformed requests may cause the server to dereference a NULL pointer. This issu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-34798</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-34798</guid>
    <pubDate>Thu, 16 Sep 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-34798</strong></p>
  <p>Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-34798">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-33193 – A crafted method sent through HTTP/2 will bypass validation and be forwarded by ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33193</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33193</guid>
    <pubDate>Mon, 16 Aug 2021 08:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-33193</strong></p>
  <p>A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33193">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-31618 – Apache HTTP Server protocol handler for the HTTP/2 protocol checks received requ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31618</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31618</guid>
    <pubDate>Tue, 15 Jun 2021 09:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-31618</strong></p>
  <p>Apache HTTP Server protocol handler for the HTTP/2 protocol checks received request headers against the size limitations as configured for the server and used for the HTTP/1 protocol as well. On violation of these restrictions and HTTP response is sent to the client with a status code indicating why the request was rejected. This rejection response was not fully initialised in the HTTP/2 protocol…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31618">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-30641 – Apache HTTP Server versions 2.4.39 to 2.4.46 Unexpected matching behavior with '...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-30641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-30641</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-30641</strong></p>
  <p>Apache HTTP Server versions 2.4.39 to 2.4.46 Unexpected matching behavior with 'MergeSlashes OFF'</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-30641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-26691 – In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-26691</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-26691</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-26691</strong></p>
  <p>In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-26691">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-26690 – Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header ha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-26690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-26690</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-26690</strong></p>
  <p>Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-26690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35452 – Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35452</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35452</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35452</strong></p>
  <p>Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byt…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35452">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-13950 – Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-13950</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-13950</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-13950</strong></p>
  <p>Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using both Content-Length and Transfer-Encoding headers, leading to a Denial of Service</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-13950">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-13938 – Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop ht...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-13938</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-13938</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-13938</strong></p>
  <p>Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop httpd on Windows</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-13938">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-17567 – Apache HTTP Server versions 2.4.6 to 2.4.46 mod_proxy_wstunnel configured on an ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-17567</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-17567</guid>
    <pubDate>Thu, 10 Jun 2021 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-17567</strong></p>
  <p>Apache HTTP Server versions 2.4.6 to 2.4.46 mod_proxy_wstunnel configured on an URL that is not necessarily Upgraded by the origin server was tunneling the whole connection regardless, thus allowing for subsequent requests on the same connection to pass through with no HTTP validation, authentication or authorization possibly configured.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-17567">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-29641 – Directus 8 before 8.8.2 allows remote authenticated users to execute arbitrary c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-29641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-29641</guid>
    <pubDate>Wed, 07 Apr 2021 22:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-29641</strong></p>
  <p>Directus 8 before 8.8.2 allows remote authenticated users to execute arbitrary code because file-upload permissions include the ability to upload a .php file to the main upload directory and/or upload a .php file and a .htaccess file to a subdirectory. Exploitation succeeds only for certain installations with the Apache HTTP Server and the local-storage driver (e.g., when the product was obtained…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-29641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25073 – FreedomBox through 20.13 allows remote attackers to obtain sensitive information...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25073</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25073</guid>
    <pubDate>Wed, 02 Sep 2020 02:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25073</strong></p>
  <p>FreedomBox through 20.13 allows remote attackers to obtain sensitive information from the /server-status page of the Apache HTTP Server, because a connection from the Tor onion service (or from PageKite) is considered a local connection. This affects both the freedombox and plinth packages of some Linux distributions, but only if the Apache mod_status module is enabled.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25073">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-9490 – Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-9490</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-9490</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-9490</strong></p>
  <p>Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-9490">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-11993 – Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11993</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11993</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-11993</strong></p>
  <p>Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for the HTTP/2 module and on certain traffic edge patterns, logging statements were made on the wrong connection, causing concurrent use of memory pools. Configuring the LogLevel of mod_http2 above "info" will mitigate this vulnerability for unpatched servers.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11993">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-11985 – IP address spoofing when proxying using mod_remoteip and mod_rewrite For configu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11985</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11985</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-11985</strong></p>
  <p>IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip and certain mod_rewrite rules, an attacker could spoof their IP address for logging and PHP scripts. Note this issue was fixed in Apache HTTP Server 2.4.24 but was retrospectively allocated a low severity CVE in 2020.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-345</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11985">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-11984 – Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11984</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11984</guid>
    <pubDate>Fri, 07 Aug 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-11984</strong></p>
  <p>Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11984">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-12442 – Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-12442</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-12442</guid>
    <pubDate>Tue, 28 Apr 2020 22:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-12442</strong></p>
  <p>Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-12442">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-1927 – In Apache HTTP Server 2.4.0 to 2.4.41, redirects configured with mod_rewrite tha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1927</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1927</guid>
    <pubDate>Thu, 02 Apr 2020 00:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-1927</strong></p>
  <p>In Apache HTTP Server 2.4.0 to 2.4.41, redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an an unexpected URL within the request URL.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1927">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-1934 – In Apache HTTP Server 2.4.0 to 2.4.41, mod_proxy_ftp may use uninitialized memor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1934</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1934</guid>
    <pubDate>Wed, 01 Apr 2020 20:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-1934</strong></p>
  <p>In Apache HTTP Server 2.4.0 to 2.4.41, mod_proxy_ftp may use uninitialized memory when proxying to a malicious FTP server.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-908</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1934">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-17104 – In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-17104</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-17104</guid>
    <pubDate>Tue, 08 Oct 2019 13:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-17104</strong></p>
  <p>In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP Server does not protect against theft because the HTTPOnly flag is not set.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-565</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-17104">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10097 – In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10097</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10097</guid>
    <pubDate>Thu, 26 Sep 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10097</strong></p>
  <p>In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol, a specially crafted PROXY header could trigger a stack buffer overflow or NULL pointer deference. This vulnerability could only be triggered by a trusted proxy and not by untrusted HTTP clients.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10097">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-10092 – In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was rep...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10092</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10092</guid>
    <pubDate>Thu, 26 Sep 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-10092</strong></p>
  <p>In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page. An attacker could cause the link on the error page to be malformed and instead point to a page of their choice. This would only be exploitable where a server was set up with proxying enabled but was misconfigured in such a way that the Proxy Error page was displayed.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10092">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-10082 – In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 sess...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10082</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10082</guid>
    <pubDate>Thu, 26 Sep 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-10082</strong></p>
  <p>In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10082">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-10098 – In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite tha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10098</guid>
    <pubDate>Wed, 25 Sep 2019 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-10098</strong></p>
  <p>In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an unexpected URL within the request URL.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2016-10796 – cPanel before 58.0.4 initially uses weak permissions for Apache HTTP Server log ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10796</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10796</guid>
    <pubDate>Tue, 06 Aug 2019 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2016-10796</strong></p>
  <p>cPanel before 58.0.4 initially uses weak permissions for Apache HTTP Server log files (SEC-130).</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-275</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10796">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-10786 – cPanel before 60.0.25 allows members of the nobody group to read Apache HTTP Ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10786</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10786</guid>
    <pubDate>Tue, 06 Aug 2019 13:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-10786</strong></p>
  <p>cPanel before 60.0.25 allows members of the nobody group to read Apache HTTP Server SSL keys (SEC-186).</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10786">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2017-18429 – In cPanel before 66.0.2, Apache HTTP Server SSL domain logs can persist on disk ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-18429</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-18429</guid>
    <pubDate>Fri, 02 Aug 2019 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2017-18429</strong></p>
  <p>In cPanel before 66.0.2, Apache HTTP Server SSL domain logs can persist on disk after an account termination (SEC-291).</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-254</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-18429">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2017-18428 – In cPanel before 66.0.2, Apache HTTP Server domlogs become temporarily world-rea...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-18428</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-18428</guid>
    <pubDate>Fri, 02 Aug 2019 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2017-18428</strong></p>
  <p>In cPanel before 66.0.2, Apache HTTP Server domlogs become temporarily world-readable during log processing (SEC-290).</p>
  <p><strong>CVSS:</strong> 2.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-18428">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2017-18424 – In cPanel before 66.0.2, the Apache HTTP Server configuration file is changed to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-18424</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-18424</guid>
    <pubDate>Fri, 02 Aug 2019 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2017-18424</strong></p>
  <p>In cPanel before 66.0.2, the Apache HTTP Server configuration file is changed to world-readable when rebuilt (SEC-274).</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-18424">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2017-18412 – cPanel before 67.9999.103 allows Apache HTTP Server log files to become world-re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-18412</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-18412</guid>
    <pubDate>Fri, 02 Aug 2019 14:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2017-18412</strong></p>
  <p>cPanel before 67.9999.103 allows Apache HTTP Server log files to become world-readable because of mishandling on an account rename (SEC-296).</p>
  <p><strong>CVSS:</strong> 2.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-18412">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2018-20932 – cPanel before 70.0.23 exposes Apache HTTP Server logs after creation of certain ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-20932</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-20932</guid>
    <pubDate>Thu, 01 Aug 2019 16:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2018-20932</strong></p>
  <p>cPanel before 70.0.23 exposes Apache HTTP Server logs after creation of certain domains (SEC-406).</p>
  <p><strong>CVSS:</strong> 2.7 · <strong>CWE:</strong> CWE-538</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-20932">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
