Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rpf9-hrjr-88fv

Опубликовано: 28 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Uncontrolled Resource Consumption vulnerability in Apache Tomcat's WebSocket chat example.

This issue affects Apache Tomcat: from 11.0.0-M20 through 11.0.24, from 10.1.24 through 10.1.57, from 9.0.89 through 9.0.120. Users who have followed the security guidance to remove the examples web application are not affected by this issue.

Users are recommended to remove the examples web application or to upgrade to version 11.0.25, 10.1.58 or 9.0.121 (when released), which fix the issue.

Uncontrolled Resource Consumption vulnerability in Apache Tomcat's WebSocket chat example.

This issue affects Apache Tomcat: from 11.0.0-M20 through 11.0.24, from 10.1.24 through 10.1.57, from 9.0.89 through 9.0.120. Users who have followed the security guidance to remove the examples web application are not affected by this issue.

Users are recommended to remove the examples web application or to upgrade to version 11.0.25, 10.1.58 or 9.0.121 (when released), which fix the issue.

EPSS

Процентиль: 23%
0.0031
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
ubuntu
6 дней назад

(Uncontrolled Resource Consumption vulnerability in Apache Tomcat's Web ...)

CVSS3: 7.5
nvd
6 дней назад

Uncontrolled Resource Consumption vulnerability in Apache Tomcat's WebSocket chat example. This issue affects Apache Tomcat: from 11.0.0-M20 through 11.0.24, from 10.1.24 through 10.1.57, from 9.0.89 through 9.0.120. Users who have followed the security guidance to remove the examples web application are not affected by this issue. Users are recommended to remove the examples web application or to upgrade to version 11.0.25, 10.1.58 or 9.0.121 (when released), which fix the issue.

CVSS3: 7.5
debian
6 дней назад

Uncontrolled Resource Consumption vulnerability in Apache Tomcat's Web ...

EPSS

Процентиль: 23%
0.0031
Низкий

7.5 High

CVSS3

Дефекты

CWE-400