PoC Archive PoC Archive

tag

Apache

Apache Traffic Server Internal @Header Metadata Spoofing (CVE-2026-33267)
CVE-2026-33267 / GHSA-jrh6-9hgv-mqm7 web Patched
CVE-2026-33267 / GHSA-jrh6-9hgv-mqm7webCRITICAL 10Patched2026-08-16Apache mod_ssl TLS 1.3 Session Resumption Client Certificate Bypass (CVE-2025-23048)
CVE-2025-23048 web Patched
CVE-2025-23048webCRITICAL 9.1Patched2026-07-06Apache HTTP Server mod_auth_digest Timing Attack — CVE-2026-33006
CVE-2026-33006 web Patched
CVE-2026-33006webMEDIUM 4.8Patched2026-07-05Apache HTTP Server HTTP/2 HPACK Cookie-Merging Memory Bomb (CVE-2026-49975) EPSS 31%
CVE-2026-49975 network Unverified
CVE-2026-49975networkHIGHUnverified2026-07-05Apache httpd mod_http2 Double-Free Pre-Auth RCE - CVE-2026-23918 EPSS 50%
CVE-2026-23918 web Patched
CVE-2026-23918webCRITICALPatched2026-05-17