OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-59685

HIGH · CVSS 7.5 EPSS 0.50%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

An out-of-bounds write vulnerability exists in Apache HTTP Server on Windows when processing paths with 8.3 names that can expand, potentially leading to memory corruption and arbitrary code execution. Organizations using affected versions of Apache HTTP Server (2.4.0 to 2.4.68) on Windows should prioritize this issue to mitigate potential exploitation risks. System administrators and security teams managing web servers should assess their environments for this vulnerability and apply necessary updates.

CVE
CVE-2026-59685
Severity
HIGH
CVSS
7.5
EPSS
0.50%
Windows Apache

Original NVD Description

Out-of-bounds Write vulnerability in Apache HTTP Server on Windows while processing paths with 8.3 names that may grow when expanded. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.68.

Related CVEs

Other vulnerabilities affecting the same vendor(s)