Sploitus

CVE-2026-23918

33 known exploits for CVE-2026-23918

Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server: 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

Apache Http Server
= 2.4.66
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
49.7% (99th percentile)
Weakness
CWE-415, CWE-1341
NVD status
Modified
Published
2026-05-04
CVE-2026-23918 at NVD
Authoritative description, scoring and affected products

33 known exploits for CVE-2026-23918

Proof-of-concept code and exploit modules indexed by Sploitus

CVE-2026-23918-Apache-H2-PoC
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918-Double-free-Apache-httpd-mod_http2
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918-Passive-Audit
2026-09-10 KitPloitKITPLOIT
Apache-CVE-2026-23918-fix
2026-09-10 KitPloitKITPLOIT
CVE-2026-23918-Elite-Auditor
2026-09-09 KitPloitKITPLOIT
CVE-2026-23918-test
2026-09-09 KitPloitKITPLOIT
CVE-2026-23918
2026-09-09 KitPloitKITPLOIT
CVE-2026-23918-Apache-HTTP-Server-DoubleFree-PoC
2026-09-09 KitPloitKITPLOIT
CVE-2026-23918
2026-09-09 KitPloitKITPLOIT
CVE-2026-23918-poc
2026-09-08 KitPloitKITPLOIT
apache_audit_cve-2026-23918
2026-09-06 KitPloitKITPLOIT
Detections-CVE-2026-23918
2026-09-03 KitPloitKITPLOIT
cve-2026-poc-collection
2026-08-06 TreasureBoy99GITHUB
cve-2026-poc-collection
2026-08-03 TreasureBoy520GITHUB
πŸ“„ Apache 2.4.66 HTTP/2 mod_http2 Double-Free Denial of Service
2026-06-16 indoushkaPACKETSTORM
πŸ“„ Apache HTTP Server 2.4.66 Denial of Service
2026-05-29 xeloxaPACKETSTORMPython
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service
2026-05-26 alisunbulEXPLOITDBPython
cve-2026-poc-collection
2026-05-21 XZ1r0GITHUB
Exploit for Double Free in Apache Http_Server
2026-05-16 sibersanGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-13 BencodinGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-11 striga-aiGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-08 insomnisecGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-07 alt3kxGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-06 rhasan-comGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-06 xeloxaGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-06 CYFAREGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-06 hackervlogofficialGITHUB
Exploit for Double Free in Apache Http_Server
2026-05-05 12lie20GITHUB
Exploit for Double Free in Apache Http_Server
2026-05-05 qassam-315GITHUB
Exploit for Double Free in Apache Http_Server
2026-05-05 rshostingGITHUB