Apache has released a security update to address several vulnerabilities affecting Apache HTTP Server versions 2.4.67 and earlier, fixed in version 2.4.68.
The addressed vulnerabilities could allow the attacker to manipulate data, perform denial-of-service attacks and cross-site scripting attacks, obtain sensitive information, gain elevated privileges, or execute arbitrary code on the affected system.
Sample of the addressed vulnerabilities:
1. Apache HTTP Server Buffer Underwrite Vulnerability (CVE-2026-44631):
2. Apache HTTP Server Cross-Site Scripting exists in mod_proxy_ftp’s Vulnerability (CVE-2026-29170):
The enterprise should deploy this patch as soon as the testing phase is completed.
| Cookie | Duration | Description |
|---|---|---|
| cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
| cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
| cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
| cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
| cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
| viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |