A vulnerability was found in Apache HTTP Server up to 2.4.66. It has been declared as problematic. This vulnerability affects unknown code of the component mod_dav_lock/mod_dav_svn. Such manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2026-29169. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.