VendorsApachehttp_serverany version
Vulnerabilities

Apache HTTP Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

217CVEs
CVE-2025-53020
Apache HTTP Server: HTTP/2 DoS by Memory Increase
Published 2025-07-10 · Modified
7.5EPSS 0.048
CVE-2026-49975
Apache HTTP Server: mod_http2 denial of service
Published 2026-06-08 · Modified
7.5EPSS 0.042
CVE-2006-20001
Apache HTTP Server: mod_dav out of bounds read, or write of zero byte
Published 2023-01-17 · Modified
7.5EPSS 0.035
CVE-2024-38477
Apache HTTP Server: Crash resulting in Denial of Service in mod_proxy via a malicious request
Published 2024-07-01 · Modified
7.5EPSS 0.032
CVE-2023-31122
Apache HTTP Server: mod_macro buffer over-read
Published 2023-10-23 · Analyzed
7.5EPSS 0.030
CVE-2021-32785
Format string bug in the Redis cache implementation
Published 2021-07-22 · Modified
7.5EPSS 0.027
CVE-2026-42536
Apache HTTP Server: mod_xml2enc heap overflow
Published 2026-06-08 · Modified
7.5EPSS 0.027
CVE-2026-34355
Apache HTTP Server: mod_proxy_html buffer overflow
Published 2026-06-08 · Modified
7.5EPSS 0.027
CVE-2023-27522
Apache HTTP Server: mod_proxy_uwsgi HTTP response splitting
Published 2023-03-07 · Analyzed
7.5EPSS 0.021
CVE-2008-2384
SQL injection vulnerability in mod_auth_mysql.c in the mod-auth-mysql (aka libapache2-mod-auth-mysql) module for the Apache HTTP Server 2.x, when configured to use a multibyte character set that allows a \ (backslash) as part of the character encoding, allows remote attackers to execute arbitrary SQL commands via unspecified inputs in a login request.
Published 2009-01-22 · Modified
7.5EPSS 0.019
CVE-2026-29169
Apache HTTP Server: mod_dav_lock indirect lock crash
Published 2026-05-04 · Modified
7.5EPSS 0.016
CVE-2025-3891
Mod_auth_openidc: dos via empty post in mod_auth_openidc with oidcpreservepost enabled
Published 2025-04-29 · Modified
7.5EPSS 0.014
CVE-2026-34356
Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
Published 2026-06-08 · Analyzed
7.5EPSS 0.012
CVE-2025-49630
Apache HTTP Server: mod_proxy_http2 denial of service
Published 2025-07-10 · Modified
7.5EPSS 0.012
CVE-2024-43394
Apache HTTP Server: SSRF on Windows due to UNC paths
Published 2025-07-10 · Modified
7.5EPSS 0.011
CVE-2026-34059
Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data()
Published 2026-05-04 · Analyzed
7.5EPSS 0.010
CVE-2025-59775
Apache HTTP Server: NTLM Leakage on Windows through UNC SSRF
Published 2025-12-05 · Analyzed
7.5EPSS 0.008
CVE-2024-43204
Apache HTTP Server: SSRF with mod_headers setting Content-Type header
Published 2025-07-10 · Modified
7.5EPSS 0.008
CVE-2024-42516
Apache HTTP Server: HTTP response splitting
Published 2025-07-10 · Modified
7.5EPSS 0.007
CVE-2024-47252
Apache HTTP Server: mod_ssl error log variable escaping
Published 2025-07-10 · Modified
7.5EPSS 0.007
CVE-2025-55753
Apache HTTP Server: mod_md (ACME), unintended retry intervals
Published 2025-12-05 · Analyzed
7.5EPSS 0.005
CVE-2025-49812
Apache HTTP Server: mod_ssl TLS upgrade attack
Published 2025-07-10 · Modified
7.4EPSS 0.006
CVE-2020-35452
mod_auth_digest possible stack overflow by one nul byte
Published 2021-06-10 · Modified
7.3EPSS 0.548
CVE-2023-38709
Apache HTTP Server: HTTP response splitting
Published 2024-04-04 · Modified
7.3EPSS 0.039
CVE-2026-44185
Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
Published 2026-06-08 · Modified
7.3EPSS 0.018
CVE-2026-29168
Apache HTTP Server: mod_md unrestricted OCSP response
Published 2026-05-05 · Analyzed
7.3EPSS 0.011
CVE-2026-48913
Apache HTTP Server: mod_http2 memory corruption when file handles exhausted
Published 2026-06-08 · Analyzed
7.3EPSS 0.011
CVE-2026-44186
Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp
Published 2026-06-08 · Analyzed
7.3EPSS 0.011
CVE-2002-0839
The shared memory scoreboard in the HTTP daemon for Apache 1.3.x before 1.3.27 allows any user running as the Apache UID to send a SIGUSR1 signal to any process as root, resulting in a denial of service (process kill) or possibly other behaviors that would not normally be allowed, by modifying the parent[].pid and parent[].last_rtime segments in the scoreboard.
Published 2002-10-05 · Modified
7.2EPSS 0.009
CVE-2004-2343
Apache HTTP Server 2.0.47 and earlier allows local users to bypass .htaccess file restrictions, as specified in httpd.conf with directives such as Deny From All, by using an ErrorDocument directive. NOTE: the vendor has disputed this issue, since the .htaccess mechanism is only intended to restrict external web access, and a local user already has the privileges to perform the same operations without using ErrorDocument
Published 2005-08-16 · Modified
7.2EPSS 0.006
CVE-2009-1891
The mod_deflate module in Apache httpd 2.2.11 and earlier compresses large files until completion even after the associated network connection is closed, which allows remote attackers to cause a denial of service (CPU consumption).
Published 2009-07-10 · Modified
7.1EPSS 0.171
CVE-2009-1890
The stream_reqbody_cl function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server before 2.3.3, when a reverse proxy is configured, does not properly handle an amount of streamed data that exceeds the Content-Length value, which allows remote attackers to cause a denial of service (CPU consumption) via crafted requests.
Published 2009-07-05 · Modified
7.1EPSS 0.162
CVE-2012-0883
envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
Published 2012-04-18 · Modified
6.9EPSS 0.009
CVE-2014-0226
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.
Published 2014-07-20 · Modified
6.81 PoCEPSS 0.857
CVE-2010-0010
Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.
Published 2010-02-02 · Modified
6.8EPSS 0.434
CVE-2026-43951
Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash
Published 2026-06-08 · Analyzed
6.5EPSS 0.010
CVE-2026-33523
Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line
Published 2026-05-04 · Analyzed
6.5EPSS 0.010
CVE-2025-65082
Apache HTTP Server: CGI environment variable override
Published 2025-12-05 · Analyzed
6.5EPSS 0.008
CVE-2009-1956
Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensitive information or cause a denial of service (application crash) via crafted input.
Published 2009-06-06 · Modified
6.4EPSS 0.120
CVE-2024-24795
Apache HTTP Server: HTTP Response Splitting in multiple modules
Published 2024-04-04 · Analyzed
6.3EPSS 0.029
← Prev3 / 6Next →