https://seclists.org/oss-sec/2026/q1/143: CVE-2026-24735: Apache Answer: vision API Improper Access Control leads to Information Disclosu
Published Feb 4, 2026
·Updated
Affected Software
1 affected component
Apache Answer<=1.7.1
Frequently Asked Questions
1
What is the severity of CVE-2026-24735?
The severity of CVE-2026-24735 is classified as important.
2
Which versions of Apache Answer are affected by CVE-2026-24735?
Apache Answer versions through 1.7.1 are affected by CVE-2026-24735.
3
What type of vulnerability is CVE-2026-24735?
CVE-2026-24735 is an Improper Access Control vulnerability that leads to Information Disclosure.
4
What information could be exposed due to CVE-2026-24735?
CVE-2026-24735 could expose private personal information to an unauthorized actor.
5
How do I fix CVE-2026-24735?
To fix CVE-2026-24735, upgrade Apache Answer to a version later than 1.7.1.