CVE-2026-63686 | Apache HTTP Server up to 2.4.68 mod_xml2enc null pointer dereference

SecurityVulns

A vulnerability classified as problematic has been found in Apache HTTP Server up to 2.4.68. This affects an unknown part of the component mod_xml2enc. The manipulation leads to null pointer dereference.

This vulnerability is listed as CVE-2026-63686. The attack may be initiated remotely. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More