A vulnerability described as problematic has been identified in Apache HTTP Server up to 2.4.67. This affects the function proxy_ftp_handler of the component mod_proxy_ftp. Such manipulation leads to infinite loop.

This vulnerability is documented as CVE-2026-44186. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.