VYPR
Medium severity6.3NVD Advisory· Published Apr 4, 2024· Updated Jun 17, 2026

CVE-2024-24795

CVE-2024-24795

Description

HTTP Response splitting in multiple modules in Apache HTTP Server allows an attacker that can inject malicious response headers into backend applications to cause an HTTP desynchronization attack.

Users are recommended to upgrade to version 2.4.59, which fixes this issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

66

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.