CVE List

CVE-2022-37436

Moderate 5.3

Prior to Apache HTTP Server 2.4.55, a malicious backend can cause the response headers to be truncated early, resulting in some headers being incorporated into the response body. If the later headers have any security purpose, they will not be interpreted by the client.

Published January 17, 2023.

Affected software

Get alerts for Apache HTTP Server

Reference links