Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Fedora has issued a critical security update for the Apache HTTP Server, addressing severe vulnerabilities identified as CVE-2025-58098. The update, version 2.4.66, was released on December 9, 2025, and affects users of Fedora 42 and Fedora 43. Users are advised to apply the update to mitigate poten...
Oracle has released multiple security updates for its Linux distributions, addressing several critical vulnerabilities. Key updates include patches for CVE-2026-59090 and CVE-2026-18301 in GIMP, and multiple CVEs in FreeRDP, libssh, and Grafana. Affected systems include Oracle Linux 8, 9, and 10, wi...
The Apache HTTP Server has critical vulnerabilities related to ACME certificate renewals and Server Side Includes (SSI). Specifically, CVE-2025-55753 allows repeated renewal attempts without delays, potentially causing a denial of service, while CVE-2025-58098 permits arbitrary code execution throug...
Recent updates for apache2 address multiple security vulnerabilities affecting openSUSE Leap 16.0 and SUSE Server 12 SP5. Key issues include unintended retry intervals, CGI environment variable overrides, and a bypass vulnerability related to mod_userdir. Users are advised to apply the patches using...