All 5 CVE vulnerabilities found in Apache Portable Runtime Utility, with AI-generated Chinese analysis, references, and POCs.
Vendor: Apache Software Foundation
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-49506 | Apache Portable Runtime Utility: apr_password_validate() vulnerable to timing attack CWE-208 | - | - | 2026-08-06 |
| CVE-2026-32327 | Apache Portable Runtime Utility: apr-util XML stack recursion crash CWE-674 | - | - | 2026-08-06 |
| CVE-2026-34191 | Apache Portable Runtime Utility: SQL Injection in apr_dbd_oracle CWE-89 | - | - | 2026-08-06 |
| CVE-2026-34501 | Apache Portable Runtime Utility: Heap buffer overflow in APR redis client CWE-122 | - | - | 2026-08-06 |
| CVE-2026-34502 | Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client CWE-122 | - | - | 2026-08-06 |
All 5 known CVE vulnerabilities affecting Apache Portable Runtime Utility with full Chinese analysis, references, and POCs where available.