Apache HTTP Server Project has 2 CVEs on record. 2 were published in the last 90 days.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- —
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
Weakness classes
Products
- Apache Lounge Windows 2
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2026-89282NoneThe Apache Lounge Windows distribution of Apache HTTP Server build contains an insecure installation directory permissions vulnerability through its default install directory on C:\, which inherits write access for Authenticated Users.3CVE-2026-89281NoneThe Apache Lounge Windows distribution of Apache HTTP Server build contains a hardcoded configuration path vulnerability within openssl.cnf path that can allow local code execution.3
Apache HTTP Server Project vulnerabilities
CVEs affecting Apache HTTP Server Project, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-89282NoneThe Apache Lounge Windows distribution of Apache HTTP Server build contains an insecure installation directory permissions vulnerability through its default install directory on C:\, which inherits write access for Authenticated Users.
The Apache Lounge Windows distribution of Apache HTTP Server build contains an insecure installation directory permissions vulnerability through its default install directory on C:\, which inherits write access for Authenticated Users.
▾ SunlitApache HTTP Server Project · Apache Lounge Windowsvia NVD
CVE-2026-89281NoneThe Apache Lounge Windows distribution of Apache HTTP Server build contains a hardcoded configuration path vulnerability within openssl.cnf path that can allow local code execution.
The Apache Lounge Windows distribution of Apache HTTP Server build contains a hardcoded configuration path vulnerability within openssl.cnf path that can allow local code execution.
▾ SunlitApache HTTP Server Project · Apache Lounge Windowsvia NVD