PT-2026-36797 · Apache · Apache Http Server
Y7Syeu
·
Published
2026-05-04
·
Updated
2026-05-04
·
CVE-2026-24072
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.
Users are recommended to upgrade to version 2.4.67, which fixes this issue.
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Http Server