CRITICAL
9.8 CVE-2026-57941 Published 1 Oct 2026
Apache HTTP Server mod_http2 Use-After-Free Vulnerability
Worried this affects your website?
Apache HTTP Server is affected by a Use After Free vulnerability in its mod_http2 module. The flaw is caused by shared session->bbtmp re-entrancy.
Affected versions:
- Apache HTTP Server 2.4.0 through 2.4.68
Reference: CVE-2026-57941 on NVD
← Back to Security News