Loading
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow
Use CWE-122, Apache vendor hub and Http Server product page to widen CVE-2021-26691 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-23048, CVE-2025-58098 and CVE-2025-59775 for nearby disclosures in the same product family.