ZeroHour

CVE-2025-54090

CVSS 3.1
6.3 medium
EPSS
<1%p53
Published
()
Modified
Description

A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests evaluating as "true". Users are recommended to upgrade to version 2.4.65, which fixes the issue.

Vendors
apache
Products
http server
Weakness
CWE-253
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.