OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-56449

HIGH · CVSS 7.5 EPSS 0.61%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

An out-of-bounds write vulnerability exists in the mod_proxy_html module of Apache HTTP Server versions 2.4.0 to 2.4.68, which can be exploited through crafted HTTP response bodies. This flaw could potentially lead to arbitrary code execution or crash the server, making it critical for organizations using affected versions to prioritize patching. System administrators and security teams managing Apache HTTP Server installations should take immediate action to mitigate this risk.

CVE
CVE-2026-56449
Severity
HIGH
CVSS
7.5
EPSS
0.61%
Apache

Original NVD Description

Out-of-bounds Write vulnerability in Apache HTTP Server's mod_proxy_html with crafted HTTP response bodies. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.68.

Related CVEs

Other vulnerabilities affecting the same vendor(s)