Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Apache HTTP Server: Unauthorized Access to Configuration Files
MINI-p38f-vhpx-qwwv
Summary
Apache HTTP Server allows unauthorized access to configuration files on the server, which can be exploited by attackers to gain elevated privileges and potentially take control of the server. This vulnerability affects Apache HTTP Server installations that have not properly restricted access to configuration files. To mitigate this issue, ensure that configuration files are not accessible to unauthorized users and consider implementing strict access controls.
What to do
- Update keycloak-fips to version 26.6.3-r1.
- Update keycloak-fips-advanced-compat to version 26.6.3-r1.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| MinimOS | – | keycloak-fips |
< 26.6.3-r1 Fix: upgrade to 26.6.3-r1
|
| MinimOS | – | keycloak-fips-advanced-compat |
< 26.6.3-r1 Fix: upgrade to 26.6.3-r1
|
Original title
MINI-p38f-vhpx-qwwv
Published: 24 Jun 2026 · Updated: 24 Jun 2026 · First seen: 24 Jun 2026