Apache Product Security Update Advisory (CVE-2026-23918)
A security update has been released to address a vulnerability in an Apache product. the affected product is Apache HTTP Server, and the Affected Versions are 2.4.66. the vulnerability is identified as the Double Free vulnerability (CVE-2026-23918). the Vulnerability Patch was made available in the latest update. Apache HTTP Server
Apache Product Security Update Advisory
Overview A vulnerability has been discovered in Apache MINA among Apache products and a security update has been released. Affected by Apache MINA 2.2.7 and earlier. Apache MINA 2.1.12 and earlier. Resolved vulnerabilities CVE-2026-42778: Untrusted Data deserialization vulnerability in Apache MINA, resulting in failure to securely restore external data. CVE-2026-42779:
Apache Product Security Update Advisory (CVE-2026-34197)
Summary. A lack of input validation and code injection vulnerability (CVE-2026-34197) was reported in Apache ActiveMQ and Apache ActiveMQ Broker. Affected Versions. Apache ActiveMQ Broker: 5.19.4 and earlier and 6.0.0 and earlier and 6.2.3 and earlier. Apache ActiveMQ: 5.19.4 and earlier and 6.0.0 and earlier than 6.2.3. Vulnerability Description and
Apache Security Update Advisory (CVE-2025-59789)
Overview We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version. Affected Products CVE-2025-59789 Apache bRPC version: 1.15.0 or earlier Resolved Vulnerabilities Stack overflow vulnerability due to unbounded recursion in the JSON parser
Apache Product Security Update Advisory (CVE-2025-64775)
Overview We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version. Affected Products CVE-2025-64775 Apache Struts version: 2.0.0. or earlier and 6.7.0 or earlierApache Struts version: 7.0.0. or later and 7.0.3 or earlier
Apache Product Security Update Advisory (CVE-2025-30065)
Overview We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version. Affected Products CVE-2025-30065 Apache Parquet Java 1.15.0 and earlier versions Resolved Vulnerabilities Untrusted Data Deserialization Vulnerability (CVE-2025-30065) Vulnerability
Apache Superset Security Update Advisory (CVE-2024-53949)
Overview An update has been released to address vulnerabilities in Apache Superset. Users of...
Apache Arrow R Package Security Update Advisory (CVE-2024-52338)
Overview An update has been released to address vulnerabilities in Apache Arrow R Package....
Apache OFBiz Product Security Update Advisory
Overview An update has been released to address vulnerabilities in Apache OFBiz Products. Users of...
Apache Traffic Server Security Update Advisory
Overview An update has been released to address vulnerabilities in Apache Traffic Server. Users of...

