CVE-2025-14542 - Apache HTTP Server JSON Manual Injection Vulnerability

CVE-2025-14542 - Apache HTTP Server JSON Manual Injection Vulnerability

CVE ID : CVE-2025-14542 Published : Dec. 13, 2025, 10:20 a.m. | 2 hours, 9 minutes ago Description : The vulnerability arises when a client fetches a tools’ JSON specification, known as a Manual, from a remote Manual Endpoint. While a provider may initially serve a benign manual (e.g., one defining an HTTP tool call), earning the clients’ trust, a malicious provider can later change the manual to exploit the client. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Dec. 13, 2025

Source: Telegram CVE Monitor