CVE-2026-102795: Apache Traffic Server fixes affected version range

This text was generated using artificial intelligence (AI).For Apache Traffic Server, the vulnerability was published on October 2, 2026. CVE-2026-102795 It is classified as Improper Access Control according to CWE-284 and replaces CVE-2026-41920.

Affected are Apache Traffic Server in the versions 9.0.0 to 9.2.14 as well as 10.0.0 to 10.1.3.. As fixed releases, the Apache Software Foundation names 9.2.15 for the 9.x product line and 10.1.4 for the 10.x product line.

Are my systems affected? Check now →