CVE-2026-24072 (CVSS 8.8) - An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earl

📡 NVD-Latest · 2026-05-04

CVE-2026-24072 (CVSS 8.8) - An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earl

CVE-2026-24072

CVE-2026-24072 CVSS:8.8

An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.

Users are recommended to upgrade to version 2.4.67, which fixes this issue.

产品: apache http_server


📌 来源: NVD-Latest | 🆔 CVE-2026-24072 | 📅 2026-05-04

[!] CONTACT_CHANNELS

如需商务合作、技术咨询或漏洞反馈,请通过以下离岸节点联系作者。

> PING_AUTHOR (@A1RedTeam)