CVE WATCH / VULNERABILITY DETAIL

CVE-2026-63686

HIGHCVSS 7.5NVD feed

Published 1 October 2026 · tracked since 2 October 2026

Description

A NULL pointer dereference in mod_xml2enc in Apache Software Foundation Apache HTTP Server before 2.4.69 on all platforms allows an untrusted backend server to cause a denial of service via a proxied response with a charset whose conversion partially succeeds then fails.Users are recommended to up

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-63686 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-63686

HIGHCVSS 7.5NVD feed

Published 1 October 2026 · tracked since 2 October 2026

Description

A NULL pointer dereference in mod_xml2enc in Apache Software Foundation Apache HTTP Server before 2.4.69 on all platforms allows an untrusted backend server to cause a denial of service via a proxied response with a charset whose conversion partially succeeds then fails.Users are recommended to up

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]