A vulnerability categorized as critical has been discovered in Apache HTTP Server. This impacts an unknown function of the component mod_http2. Executing a manipulation can lead to denial of service.

This vulnerability appears as CVE-2026-49975. The attack may be performed from remote. In addition, an exploit is available.

It is best practice to apply a patch to resolve this issue.