Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache HTTP Server Can Be Tricked into Disclosing Sensitive Information

BELL-CVE-2026-23235
Summary

Apache HTTP Server versions 2.4.0 to 2.4.46 are affected. If exploited, an attacker could trick the server into revealing sensitive information, potentially leading to data breaches. Update the Apache HTTP Server to a fixed version to prevent this issue.

What to do
  • Update bellsoft linux-lts to version 6.1.164-r0.
  • Update bellsoft linux-lts to version 6.12.74-r0.
Affected software
VendorProductAffected versionsFix available
bellsoft linux-lts > 6.1.163-r0 , <= 6.1.164-r0 6.1.164-r0
bellsoft linux-lts > 6.12.73-r0 , <= 6.12.74-r0 6.12.74-r0
bellsoft linux-lts > 6.12.71-r0 , <= 6.12.74-r0 6.12.74-r0
Original title
BELL-CVE-2026-23235
Published: 7 Mar 2026 · Updated: 13 Mar 2026 · First seen: 7 Mar 2026