Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache HTTP Server Unauthenticated Remote Code Execution

ECHO-502f-9006-e836
Summary

A flaw in the Apache HTTP Server can allow attackers to run malicious code on affected servers without needing a password. This could allow hackers to take control of the server or steal sensitive data. Apache HTTP Server administrators should update their servers to the latest version to prevent this risk.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
libraw All versions
Original title
ECHO-502f-9006-e836
Published: 8 Apr 2026 · Updated: 8 Apr 2026 · First seen: 8 Apr 2026