Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache HTTP Server Allows Unauthorized File Access

MINI-fpqc-3vfv-97q9
Summary

Apache HTTP Server versions 2.4.0 to 2.4.47 allow an attacker to access files outside the intended directory, potentially revealing sensitive information. This issue affects servers using the mod_authz_core module. To protect your server, update to a patched version of Apache HTTP Server, or consider alternative web servers.

What to do
  • Update grafana-fips-12.4 to version 12.4.1-r0.
Affected software
VendorProductAffected versionsFix available
– grafana-fips-12.4 <= 12.4.1-r0 12.4.1-r0
Original title
MINI-fpqc-3vfv-97q9
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026