Urgent.News

What's breaking now, across thousands of outlets.

Tech

Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350

Apache Tomcat 11.0.26 Closes an HTTP/2 Header Mix-Up Regression: CVE-2026-86350 Vulnerability overview Apache published Tomcat 11.0.26 on 15 September 2026, and the security page for that release carries an Important entry for CVE-2026-86350. Public disclosure followed on 23 September 2026, when the Tomcat security team moved the report from its private list to the public advisory. The defect is…

We haven't written up this one. Dev.to has the full story — the link below goes straight to it.

Read the original at dev.to →

More in Tech

More from Saturday 26 September →