CVE-2025-65082 - Apache HTTP Server: CGI environment variable override

CVE-2025-65082 - Apache HTTP Server: CGI environment variable override

CVE ID : CVE-2025-65082 Published : Dec. 5, 2025, 11:15 a.m. | 1 hour, 46 minutes ago Description : Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Dec. 5, 2025
Affected Product: Apache

Source: Telegram CVE Monitor