<0.1% probability · 18.8th percentile — 2026-05-05
Affected versions
cpe:2.3:a:apache:http_server:2.4.66:*:*:*:*:*:*:*
Summary
Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.
This issue affects Apache HTTP Server: 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.
TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.