Apache Tomcat

NewsSecurity Vulnerabilities

Apache Tomcat – Denial of service vulnerability [CVE-2021-42340]

CVE number – CVE-2021-42340 The Apache Software Foundation has released a security advisory to address a vulnerability in multiple versions

Read More
NewsSecurity Vulnerabilities

Apache Tomcat – CVE-2021-25329 Incomplete fix for CVE-2020-9484 (RCE via session persistence)

The fix for CVE-2020-9484 was incomplete. When using a highly unlikely configuration edge case, the Tomcat instance was still vulnerable

Read More
NewsSecurity Vulnerabilities

Apache Releases Security Advisory for Tomcat [CVE-2021-24122]

The Apache Software Foundation has released a security advisory to address a vulnerability affecting multiple versions of Apache Tomcat. An

Read More
NewsSecurity Vulnerabilities

Apache Tomcat HTTP/2 Request header mix-up vulnerability [CVE-2020-17527]

CVE number – CVE-2020-17527 While investigating Bug 64830 it was discovered that Apache Tomcat could re-use an HTTP request header

Read More
NewsSecurity Vulnerabilities

Apache Tomcat SSI Printenv Command Cross-Site Scripting Vulnerability [CVE-2019-0221]

CVE Number – CVE-2019-0221 A vulnerability in Apache Tomcat could allow an unauthenticated, remote attacker to conduct a cross-site scripting

Read More
NewsSecurity Vulnerabilities

Apache Tomcat CGI Servlet Arbitrary Code Execution Vulnerability [CVE-2019-0232]

CVE Number – CVE-2019-0232 A vulnerability in the CGI Servlet of Apache Tomcat could allow an unauthenticated, remote attacker to execute arbitrary

Read More
NewsSecurity Vulnerabilities

Apache Tomcat HTTP/2 Implementation Denial of Service Vulnerability [CVE-2019-0199]

CVE Number – CVE-2019-0199 A vulnerability in Apache Tomcat could allow an unauthenticated, remote attacker to cause a denial of

Read More
NewsSecurity Vulnerabilities

Apache Tomcat Default Servlet Open Redirect Vulnerability [CVE-2018-11784]

CVE Number – CVE-2018-11784 A vulnerability in Apache Tomcat could allow an unauthenticated, remote attacker to conduct an open redirect

Read More
NewsSecurity Vulnerabilities

Apache Tomcat Native OCSP Responder Unauthorized Access Vulnerability [CVE-2018-8019]

CVE Number –  CVE-2018-8019 A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Apache Tomcat Native could allow

Read More