OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-59797

CRITICAL · CVSS 9.8 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A vulnerability exists in the Apache HTTP Server's mod_ssl module, specifically related to improper privilege management through SSLRequire and file-related expressions. This flaw could potentially allow unauthorized access to sensitive resources, compromising the security of web applications. Organizations using affected versions of Apache (2.4.0 to 2.4.68) should prioritize remediation to mitigate risks associated with this vulnerability.

CVE
CVE-2026-59797
Severity
CRITICAL
CVSS
9.8
EPSS
0.39%
Apache

Original NVD Description

Improper Privilege Management vulnerability in Apache HTTP Server's mod_ssl via SSLRequire and file-related expressions. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.68.

Related CVEs

Other vulnerabilities affecting the same vendor(s)