EasyApache4 v25.80 Maintenance and Security Release
PinnedWebPros has released an update for EasyApache 4! Take a look at some highlights below, and then join us on the cPanel Community Forums, Discord, or Reddit to talk about this update and much more. If you have additional questions, feel free to reach out on one of our social channels.
-
ea-tomcat101
-
EA-13537: Update ea-tomcat101 from v10.1.57 to v10.1.59
-
(CVE-2026-66299) Low: DoS in WebSocket chat example
-
ea-redis62
-
EA-13536: Update ea-redis62 from v6.2.23 to v6.2.24
-
Security: use-after-free in the TLS pending-data list when a command closes another pending connection (no CVE assigned upstream as of this release)
-
ea-nginx
-
EA-13535: Update ea-nginx from v1.31.3 to v1.31.4
-
EA4-317: Build against PCRE2 on Debian so nginx and its modules agree
-
ea-ruby27-rubygem-rack
-
EA-13530: Update ea-ruby27-rubygem-rack from v2.2.23 to v2.2.24
-
CVE-2026-26962: Improper unfolding of folded multipart headers preserves CRLF in parsed parameter values
-
ea-nginx-echo
-
EA-13535: Build against ea-nginx version v1.31.4
-
ea-nginx-headers-more
-
EA-13535: Build against ea-nginx version v1.31.4
-
ea-nginx-passenger
-
EA-13535: Build against ea-nginx version v1.31.4
-
ea-nginx-njs
-
EA-13535: Build against ea-nginx version v1.31.4
-
EA4-317: Rebuilt so the njs module links the same PCRE library as ea-nginx
-
ea-modsec30-connector-nginx
-
EA-13535: Build against ea-nginx version v1.31.4
Post is closed for comments.
Comments
0 comments