Apache APISIX Denial of Service Flaw Can Disrupt Web Traffic
Apache disclosed CVE-2026-94250 on October 1, 2026, warning that public access to a batch-request endpoint can let an attacker exhaust a gateway worker's memory. Version 3.19.0 repairs this Apache APISIX denial-of-service flaw. APISIX forwards clients…