Apache HTTP Server 2.4.69 fixes 20 flaws across mod_dav, mod_http2 and mod_rewrite
The Apache Software Foundation released httpd 2.4.69 on October 1, closing 20 vulnerabilities. Five are rated moderate, including a stack overflow in mod_vhost_alias reachable through an oversized Host header.
