VYPR

mod_auth_digest

by Apache

CVEs (1)

  • CVE-2026-33006MedMay 4, 2026
    risk 0.24cvss 4.8epss 0.01

    A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker. Users are recommended to upgrade to version 2.4.67, which fixes this issue.