Description Apache HTTP Server versions 2.4.39 to 2.4.46 Unexpected matching behavior with 'MergeSlashes OFF' Remediation References CVE-2021-30641 Related Vulnerabilities Oracle Database Server Deserialization of Untrusted Data Vulnerability (CVE-2017-15095) WordPress Plugin MainWP Child-Securely connects sites to the MainWP WordPress Manager Dashboard Unspecified Vulnerability (2.0.27) MODX Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-1000208) WordPress Plugin MegaOptim Image Optimizer Unspecified Vulnerability (1.3.2) WordPress Plugin WP SVG images Cross-Site Scripting (3.3) Severity Medium Classification CVE-2021-30641 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N Tags Missing Update Known Vulnerabilities