CRITICAL 9.8 CVE-2026-57941 Published 1 Oct 2026

Apache HTTP Server mod_http2 Use-After-Free Vulnerability

Worried this affects your website?

Apache HTTP Server is affected by a Use After Free vulnerability in its mod_http2 module. The flaw is caused by shared session->bbtmp re-entrancy.

Affected versions:

  • Apache HTTP Server 2.4.0 through 2.4.68

Reference: CVE-2026-57941 on NVD

← Back to Security News