A vulnerability identified as critical has been detected in Apache HTTP Server up to 2.4.66. This vulnerability affects unknown code of the component mod_proxy_ajp. Performing a manipulation results in out-of-bounds read.
This vulnerability is reported as CVE-2026-33857. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.