@spiceuser-8jv86 ​ with apache being embedded in the app, it would, unfortunately need to be updated by dev and released as an update to use a later version. Given the EOL for the desktop app, this isn’t going to happen. You can find out more on the EOL announcement here: What’s going on with Spiceworks Tools & Apps in 2021?

While still not ideal, if the server is internal only and on a VLAN that only admins can use (or company employees), your vulnerability may be much smaller than a public facing apache instance.

1 Spice up