<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 22:48:40 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-06280</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-06280</link>
      <description>bdu:2024-06280</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-06280</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2024-39884 — CVE-2024-39884 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-39884</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-39884</guid>
    </item>
    <item>
      <title>BIT-apache-2024-39884 — Apache HTTP Server: source code disclosure with handlers configured via AddType</title>
      <link>https://cve.radiocsirt.org/vuln/bit-apache-2024-39884</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: apache&lt;/p&gt;
&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: apache&lt;/p&gt;
&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-apache-2024-39884</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0544 — Une vulnérabilité a été découverte dans Apache HTTP Server. Elle permet à un attaquant de provoquer une atteinte à la c…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0544</link>
      <description>certfr-2024-avi-0544</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0544</guid>
    </item>
    <item>
      <title>cnvd-2025-16615</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-16615</link>
      <description>cnvd-2025-16615</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-16615</guid>
    </item>
    <item>
      <title>EUVD-2026-217455</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-217455</link>
      <description>EUVD-2026-217455</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-217455</guid>
    </item>
    <item>
      <title>fkie_cve-2024-39884</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-39884</link>
      <description>&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-39884</guid>
    </item>
    <item>
      <title>GHSA-5r34-776f-3434</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5r34-776f-3434</link>
      <description>&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted.&lt;/p&gt;
&lt;p&gt;Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5r34-776f-3434</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-39884 — Apache HTTP Server: source code disclosure with handlers configured via AddType</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-39884</link>
      <description>msrc_CVE-2024-39884</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-39884</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:14116-1 — apache2-2.4.61-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14116-1</link>
      <description>&lt;p&gt;apache2-2.4.61-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;apache2-2.4.61-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:14116-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:3061-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:3061-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:3061-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-39884</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-39884</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: apache2, Ubuntu:20.04:LTS: apache2, Ubuntu:22.04:LTS: apache2, Ubuntu:24.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: apache2, Ubuntu:20.04:LTS: apache2, Ubuntu:22.04:LTS: apache2, Ubuntu:24.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   &amp;#34;AddType&amp;#34; and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-39884</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1520 — Apache HTTP Server: Schwachstelle ermöglicht Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1520</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Apache HTTP Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Apache HTTP Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1520</guid>
    </item>
  </channel>
</rss>
