FlawAtlas
Search the atlas
CVE-2026-44186 High

Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server. This issue affects undefined: from 2.4.0 through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

Exploit probability 0.6%
Published June 10, 2026
Required by Not available
Last source change June 10, 2026

02 / AFFECTED SOFTWARE

Affected packages

Bitnami apache

04 / EVIDENCE

Source records

Open Source Vulnerabilities BIT-apache-2026-44186

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server. This issue affects undefined: from 2.4.0 through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

View original source

05 / REFERENCES

Further evidence