The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Multiple vulnerabilities have been discovered in the Apache HTTP server, which may result in HTTP response splitting or denial of service. For the stable distr…
Some mod_proxy configurations on Apache HTTP Server allow a HTTP request smuggling attack. Configurations are affected when mod_proxy is enabled along with som…
libapache2-mod-auth-mellon, a SAML 2.0 authentication module for Apache, were reported to have the following vulnerabilities. CVE-2019-13038
Several security issues were fixed in Apache HTTP Server.
Multiple security vulnerabilities have been discovered in Apache HTTP server. CVE-2006-20001
Several security issues were fixed in Apache HTTP Server.
Several security issues were fixed in Apache HTTP Server.
Several security issues were fixed in Apache HTTP Server.
In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the d…
In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default c…
Multiple issues were found in modsecurity-apache, open source, cross platform web application firewall (WAF) engine for Apache which allows remote attackers to…
A vulnerability has been discovered in Apache Commons Text which could result in arbitrary code execution.
The Zerobot botnet, first detected earlier this month, is expanding the types of Internet of Things (IoT) devices it can compromise by going after Apache syste…
The Apache SpamAssassin project has released version 4.0.0 of its renowned open-source anti-spam platform with numerous tweaks and bug fixes and improved class…
Recently, a remote code execution flaw in the Apache Common Text library stirred up the…Apache Commons Text Library Flaw Is Worrisome, But Not Like Log4Shell o…
A now-patched vulnerability in the Apache Pulsar platform could allow MiTM attacks, risking numerous essential…Apache Pulsar Vulnerability Could Allow MiTM Att…
Multiple vulnerabilities have been discovered in Apache Tomcat, the worst of which could result in denial of service.
Multiple vulnerabilities have been discovered in Apache Webserver, the worst of which could result in remote code execution.
Apache XML Security for Java could be made to expose sensitive information.
USN-5487-1 introduced a regression in Apache HTTP Server.
USN-5487-1 introduced a regression in Apache.
Several security issues were fixed in Apache HTTP Server.
Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requ…
Several vulnerabilities have been discovered in the Apache HTTP server, which could result in denial of service, request smuggling or buffer overflows.