Apache Product Security Update Advisory (CVE-2026-23918)

Apache Product Security Update Advisory (CVE-2026-23918)

A security update has been released to address a vulnerability in an Apache product. the affected product is Apache HTTP Server, and the Affected Versions are 2.4.66. the vulnerability is identified as the Double Free vulnerability (CVE-2026-23918). the Vulnerability Patch was made available in the latest update. Apache HTTP Server

Apache Product Security Update Advisory

Apache Product Security Update Advisory

Overview A vulnerability has been discovered in Apache MINA among Apache products and a security update has been released. Affected by Apache MINA 2.2.7 and earlier. Apache MINA 2.1.12 and earlier. Resolved vulnerabilities CVE-2026-42778: Untrusted Data deserialization vulnerability in Apache MINA, resulting in failure to securely restore external data. CVE-2026-42779:

Apache Product Security Update Advisory (CVE-2026-34197)

Apache Product Security Update Advisory (CVE-2026-34197)

Summary. A lack of input validation and code injection vulnerability (CVE-2026-34197) was reported in Apache ActiveMQ and Apache ActiveMQ Broker. Affected Versions. Apache ActiveMQ Broker: 5.19.4 and earlier and 6.0.0 and earlier and 6.2.3 and earlier. Apache ActiveMQ: 5.19.4 and earlier and 6.0.0 and earlier than 6.2.3. Vulnerability Description and

Apache Security Update Advisory (CVE-2025-59789)

Apache Security Update Advisory (CVE-2025-59789)

Overview We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.   Affected Products CVE-2025-59789   Apache bRPC version: 1.15.0 or earlier   Resolved Vulnerabilities   Stack overflow vulnerability due to unbounded recursion in the JSON parser

Apache Product Security Update Advisory (CVE-2025-64775)

Apache Product Security Update Advisory (CVE-2025-64775)

Overview   We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-64775   Apache Struts version: 2.0.0. or earlier and 6.7.0 or earlierApache Struts version: 7.0.0. or later and 7.0.3 or earlier

Apache Product Security Update Advisory (CVE-2025-30065)

Apache Product Security Update Advisory (CVE-2025-30065)

Overview   We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-30065 Apache Parquet Java 1.15.0 and earlier versions     Resolved Vulnerabilities   Untrusted Data Deserialization Vulnerability (CVE-2025-30065)     Vulnerability

Apache Superset Security Update Advisory (CVE-2024-53949)

Overview   An update has been released to address vulnerabilities in Apache Superset. Users of...

Apache Arrow R Package Security Update Advisory (CVE-2024-52338)

Overview   An update has been released to address vulnerabilities in Apache Arrow R Package....

Apache OFBiz Product Security Update Advisory

Overview An update has been released to address vulnerabilities in Apache OFBiz Products. Users of...

Apache Traffic Server Security Update Advisory

Overview An update has been released to address vulnerabilities in Apache Traffic Server. Users of...