Tomcat — контейнер сервлетов с открытым исходным кодом
Релизный цикл, информация об уязвимостях
График релизов
Количество 1 262
GHSA-5x5f-9r6q-q7mh
Apache Tomcat Sensitive Information Disclosure
GHSA-qrj4-rmqg-4hcp
Apache Tomcat Does Not Properly Handle Empty Requests
GHSA-v5p2-vg3c-pmrr
Apache Tomcat Path Traversal Vulnerability
GHSA-w65j-cmqc-37p2
JULI logging component in Apache Tomcat does not restrict certain permissions for web applications
GHSA-cww4-vj5r-rx57
Exposure of Sensitive Information in Apache Tomcat
GHSA-g77g-vjjm-x83j
Apache Tomcat Example Application CSRF and XSS Vulnerabilities
GHSA-36hp-4x3g-phrg
Apache Tomcat's CookieExample Vulnerable to XSS
GHSA-wjwr-3jch-479j
Apache Tomcat SendMailServlet XSS
GHSA-v66v-63h2-8q5q
Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action.
GHSA-6j8f-66vh-39mj
Apache Tomcat Mishandles Character Sequence in Cookies
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-5x5f-9r6q-q7mh Apache Tomcat Sensitive Information Disclosure | 4% Низкий | почти 4 года назад | ||
GHSA-qrj4-rmqg-4hcp Apache Tomcat Does Not Properly Handle Empty Requests | 9% Низкий | почти 4 года назад | ||
GHSA-v5p2-vg3c-pmrr Apache Tomcat Path Traversal Vulnerability | 6% Низкий | почти 4 года назад | ||
GHSA-w65j-cmqc-37p2 JULI logging component in Apache Tomcat does not restrict certain permissions for web applications | 18% Средний | почти 4 года назад | ||
GHSA-cww4-vj5r-rx57 Exposure of Sensitive Information in Apache Tomcat | 82% Высокий | почти 4 года назад | ||
GHSA-g77g-vjjm-x83j Apache Tomcat Example Application CSRF and XSS Vulnerabilities | 1% Низкий | почти 4 года назад | ||
GHSA-36hp-4x3g-phrg Apache Tomcat's CookieExample Vulnerable to XSS | 6% Низкий | почти 4 года назад | ||
GHSA-wjwr-3jch-479j Apache Tomcat SendMailServlet XSS | 38% Средний | почти 4 года назад | ||
GHSA-v66v-63h2-8q5q Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action. | 70% Средний | почти 4 года назад | ||
GHSA-6j8f-66vh-39mj Apache Tomcat Mishandles Character Sequence in Cookies | 76% Высокий | почти 4 года назад |
Уязвимостей на страницу