CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-29167

highCVSS 8.6covered by 10 sourcesfirst seen 2026-06-09
An attacker can exploit multiple vulnerabilities in Apache HTTP Server to execute arbitrary code, bypass security measures, conduct cross-site scripting attacks, alter and disclose data, cause a denial-of-service condition, or carry out other unspecified attacks.

CSIRTS triage

What
Multiple vulnerabilities allow attackers to execute arbitrary code, bypass security measures, conduct cross-site scripting attacks, alter and disclose data, cause denial-of-service conditions, or carry out other unspecified attacks.
Who is affected
Users of Apache HTTP Server are affected.
Urgency
Remediation is high urgency due to the critical nature of the vulnerabilities.
Action
Update Apache HTTP Server to the latest version.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-29167

Get an email if CVE-2026-29167 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (10)

External references

NVD record for CVE-2026-29167

CVE.org record

Embed the live status

CVE-2026-29167 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-29167 status](https://www.csirts.com/badge/CVE-2026-29167)](https://www.csirts.com/cve/CVE-2026-29167)