Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling r:wsread() that point past the end of the storage allocated for the buffer. https://nvd.nist.gov/vuln/detail/CVE-2022-30556