CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Apache. It may lead to a denial-of-service condition.
CVE
CVE-2025-49630
Severity
HIGH
CVSS
7.5
EPSS
1.15%
Apache
Original NVD Description
In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2. Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".
Related CVEs
Other vulnerabilities affecting the same vendor(s)