Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Apache HTTP Server Unauthenticated Remote Code Execution
ECHO-502f-9006-e836
Summary
A flaw in the Apache HTTP Server can allow attackers to run malicious code on affected servers without needing a password. This could allow hackers to take control of the server or steal sensitive data. Apache HTTP Server administrators should update their servers to the latest version to prevent this risk.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| – | libraw | All versions | – |
Original title
ECHO-502f-9006-e836
Published: 8 Apr 2026 · Updated: 8 Apr 2026 · First seen: 8 Apr 2026