Hi NoMachiners, we’ve just made new packages available for v8 to update the built-in web server, nxhtd, to Apache version 2.4.62, released by Apache to fix the following CVEs:
CVE-2024-40898: Apache HTTP Server: SSRF with mod_rewrite in server/vhost context on Windows
CVE-2024-40725: Apache HTTP Server: source code disclosure with handlers configured via AddType
The new version 8.13.1 also includes the fix for this trouble report:
TR07S10326 – The Scroll Lock state is not preserved in a NoMachine physical desktop on Windows.
Get the details here: https://kb.nomachine.com/SU07V00259