VendorsApachehttpclient5.6
Vulnerabilities

Apache Software Foundation HttpClient 5.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2026-40542
Apache HttpClient: SCRAM-SHA-256 mutual authentication bypass may cause the client to accept authentication without proper mutual authentication verification
Published 2026-04-22 · Modified
7.3EPSS 0.007