Tomcat — контейнер сервлетов с открытым исходным кодом
Релизный цикл, информация об уязвимостях
График релизов
Количество 1 466
SUSE-SU-2020:1789-1
Security update for tomcat
SUSE-SU-2020:1788-1
Security update for tomcat
CVE-2020-11996
A specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5.0 to 8.5.55 could trigger high CPU usage for several seconds. If a sufficient number of such requests were made on concurrent HTTP/2 connections, the server could become unresponsive.
BDU:2021-00506
Уязвимость сервера приложений Apache Tomcat, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании
GHSA-c9hw-wf7x-jp9j
Improper Privilege Management in Tomcat
GHSA-qcxh-w3j9-58qr
Apache Tomcat Denial of Service vulnerability
ELSA-2020-2529
ELSA-2020-2529: tomcat6 security update (IMPORTANT)
ELSA-2020-2530
ELSA-2020-2530: tomcat security update (IMPORTANT)
openSUSE-SU-2020:0711-1
Security update for tomcat
GHSA-344f-f5vg-2jfj
Potential remote code execution in Apache Tomcat
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
SUSE-SU-2020:1789-1 Security update for tomcat | 1% Низкий | около 6 лет назад | ||
SUSE-SU-2020:1788-1 Security update for tomcat | 1% Низкий | около 6 лет назад | ||
CVE-2020-11996 A specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5.0 to 8.5.55 could trigger high CPU usage for several seconds. If a sufficient number of such requests were made on concurrent HTTP/2 connections, the server could become unresponsive. | CVSS3: 7.5 | 27% Средний | около 6 лет назад | |
BDU:2021-00506 Уязвимость сервера приложений Apache Tomcat, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 27% Средний | около 6 лет назад | |
GHSA-c9hw-wf7x-jp9j Improper Privilege Management in Tomcat | CVSS3: 9.8 | 99% Критический | около 6 лет назад | |
GHSA-qcxh-w3j9-58qr Apache Tomcat Denial of Service vulnerability | CVSS3: 7.5 | 73% Высокий | около 6 лет назад | |
ELSA-2020-2529 ELSA-2020-2529: tomcat6 security update (IMPORTANT) | 57% Средний | около 6 лет назад | ||
ELSA-2020-2530 ELSA-2020-2530: tomcat security update (IMPORTANT) | 57% Средний | около 6 лет назад | ||
openSUSE-SU-2020:0711-1 Security update for tomcat | 57% Средний | около 6 лет назад | ||
GHSA-344f-f5vg-2jfj Potential remote code execution in Apache Tomcat | CVSS3: 7 | 57% Средний | около 6 лет назад |
Уязвимостей на страницу