Apache HTTP Server: mod_http2 denial of service
CVE-2026-49975

Currently unrated

Key Information:

Vendor

Apache

Vendor
CVE Published:
8 June 2026

Badges

πŸ”₯ Trending nowπŸ“ˆ TrendedπŸ“ˆ Score: 3,610πŸ‘Ύ Exploit Exists🟑 Public PoCπŸ“° News Worthy

What is CVE-2026-49975?

false

Affected Version(s)

Apache HTTP Server 2.4.17 <= 2.4.67

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

News Articles

IT Security News Hourly Summary 2026-06-04 21h : 6 posts - IT Security News

6 posts were published in the last hour 18:34 : Gartner SRM 2026 Signals a Cybersecurity Shift From Prevention to Resilience 18:34 : Imperva Customers Protected Against CVE-2026-49975 (HTTP/2 Bomb) DoS 18:34 : Cybercriminals Shift From Fake Login Pages to…Read more β†’

4 days ago

References

Timeline

  • πŸ“ˆ

    Vulnerability started trending

  • 🟑

    Public PoC available

  • πŸ‘Ύ

    Exploit known to exist

  • Vulnerability published

  • πŸ“°

    First article discovered by It Security News

  • Vulnerability Reserved

Credit

Quang Luong of Calif.IO in collaboration with OpenAI Codex
.