Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache HTTP Server Unauthenticated Remote Code Execution Vulnerability

MINI-3rcf-vxg3-hv9j
Summary

A bug in the Apache HTTP Server can allow hackers to execute malicious code on a server without needing a password. This could let hackers take control of the server or steal sensitive data. Update the Apache HTTP Server to the latest version to fix this issue.

What to do
  • Update ingress-nginx-controller-1.14 to version 1.14.4-r0.
  • Update ingress-nginx-controller-compat-1.14 to version 1.14.4-r0.
  • Update ingress-nginx-opentelemetry-plugin-1.14 to version 1.14.4-r0.
  • Update ingress-nginx-custom-error-pages-1.14 to version 1.14.4-r0.
  • Update ingress-nginx-custom-error-pages-compat-1.14 to version 1.14.4-r0.
Affected software
VendorProductAffected versionsFix available
ingress-nginx-controller-1.14 <= 1.14.4-r0 1.14.4-r0
ingress-nginx-controller-compat-1.14 <= 1.14.4-r0 1.14.4-r0
ingress-nginx-opentelemetry-plugin-1.14 <= 1.14.4-r0 1.14.4-r0
ingress-nginx-custom-error-pages-1.14 <= 1.14.4-r0 1.14.4-r0
ingress-nginx-custom-error-pages-compat-1.14 <= 1.14.4-r0 1.14.4-r0
Original title
MINI-3rcf-vxg3-hv9j
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026