CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. Its EPSS score suggests a 68.3% probability of exploitation in the next 30 days.
CVE
CVE-2021-26691
Severity
CRITICAL
CVSS
9.8
EPSS
68.29%
Apache
Original NVD Description
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow
Related CVEs
Other vulnerabilities affecting the same vendor(s)