LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-34191

apache · apr-util

Published
CVSS9.1
Severitycritical
WeaknessCWE-89
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3

References

← Back to the CVE Tracker

Our coverage of CVE-2026-34191

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-34191.