Logo
vulnerabilityCVE-2026-42535
Name
CVE-2026-42535
Source
NVD ( link)Debian ( link)
Description
A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
apache2
Exploitable

Vulnerability Ratings#


9.1
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
2.4.68
Not Affected
buildroot
master
2.4.68
Not Affected
openwrt
master
2.4.65-r1
Exploitable
openwrt
openwrt-25.12
2.4.65-r1
Exploitable
yocto
master
2.4.67
Exploitable
yocto
scarthgap
2.4.67
Exploitable