CVE-2026-44186

NONE
CVSS v3
CVSS v2
EPSS (exploit probability)
CWE-835CWE

Description

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server.

This issue affects undefined: from 2.4.0 through 2.4.67.

Users are recommended to upgrade to version 2.4.68, which fixes the issue.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references