Amazon Linux 2023: Apache mod_auth_openidc Auth Bypass via Value-less Token (CVE-2026-54789)
Security Advisory
CVE-2026-54789
High
Apache
Affected:
- mod_auth_openidc < 2.4.19.4
- mod_auth_openidc-2.4.16.11-1.amzn2023.0.2 (aarch64/x86_64/src)
Fixed in:
- 2.4.19.4
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from alas.aws.amazon.com, cleaned by our LLM pipeline, and translated to English. View original.