CVE-2025-53020
HIGH 7.5EPSS 4.8%
Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server.This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63.Users are recommended to upgrade to version 2.4.64, which fixes the issue.
- CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - EPSS
- 4.80% chance of exploitation in the next 30 days, 91th percentile
- Published
- 2025-07-10
- Updated
- 2025-11-04