
Apache httpd CVE-2026-29169 "fixed in 2.4.66" was an error https://www.openwall.com/lists/oss-security/2026/05/05/12 2 more (11 total): CVE-2026-29168: mod_md unrestricted OCSP response https://www.openwall.com/lists/oss-security/2026/05/05/6 CVE-2026-28780: Buffer overflow in mod_proxy_ajp via ajp_msg_check_header() https://www.openwall.com/lists/oss-security/2026/05/05/9
Post summary
A concise list of three Apache httpd CVEs is provided, noting that CVE-2026-29169 is fixed in version 2.4.66, while the others are referenced by advisory links but no PoC, exploit, or active exploitation details are present.

