Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the origin server/application. (CVSS:7.5) (Last Update:2022-08-19) Latest security vulnerabilities (Bypass) (CVSS score >= 4)
IOTW: Latitude Financial data breach affects 14 million people
The data stolen included personal information such as passport and Medicare numbers Categories RSS Feed