Количество 33
Количество 33
RLSA-2026:37137
Important: tomcat security, bug fix, and enhancement update
RLSA-2026:36879
Important: tomcat security, bug fix, and enhancement update
RLSA-2026:36788
Important: tomcat security, bug fix, and enhancement update
ELSA-2026-37137
ELSA-2026-37137: tomcat security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36879
ELSA-2026-36879: tomcat security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36790
ELSA-2026-36790: tomcat9 security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36788
ELSA-2026-36788: tomcat security, bug fix, and enhancement update (IMPORTANT)
openSUSE-SU-2026:20612-1
Security update for tomcat10
openSUSE-SU-2026:20611-1
Security update for tomcat
openSUSE-SU-2026:20595-1
Security update for tomcat11
SUSE-SU-2026:1604-1
Security update for tomcat
SUSE-SU-2026:1603-1
Security update for tomcat10
SUSE-SU-2026:1572-1
Security update for tomcat
SUSE-SU-2026:1558-1
Security update for tomcat11
RLSA-2026:36790
Important: tomcat9 security, bug fix, and enhancement update
CVE-2026-34486
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.
CVE-2026-34486
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.
CVE-2026-34486
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.
CVE-2026-34486
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat du ...
CVE-2026-29146
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:37137 Important: tomcat security, bug fix, and enhancement update | 2 месяца назад | |||
RLSA-2026:36879 Important: tomcat security, bug fix, and enhancement update | 2 месяца назад | |||
RLSA-2026:36788 Important: tomcat security, bug fix, and enhancement update | 2 месяца назад | |||
ELSA-2026-37137 ELSA-2026-37137: tomcat security, bug fix, and enhancement update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-36879 ELSA-2026-36879: tomcat security, bug fix, and enhancement update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-36790 ELSA-2026-36790: tomcat9 security, bug fix, and enhancement update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-36788 ELSA-2026-36788: tomcat security, bug fix, and enhancement update (IMPORTANT) | 2 месяца назад | |||
openSUSE-SU-2026:20612-1 Security update for tomcat10 | 5 месяцев назад | |||
openSUSE-SU-2026:20611-1 Security update for tomcat | 5 месяцев назад | |||
openSUSE-SU-2026:20595-1 Security update for tomcat11 | 5 месяцев назад | |||
SUSE-SU-2026:1604-1 Security update for tomcat | 5 месяцев назад | |||
SUSE-SU-2026:1603-1 Security update for tomcat10 | 5 месяцев назад | |||
SUSE-SU-2026:1572-1 Security update for tomcat | 5 месяцев назад | |||
SUSE-SU-2026:1558-1 Security update for tomcat11 | 5 месяцев назад | |||
RLSA-2026:36790 Important: tomcat9 security, bug fix, and enhancement update | 2 месяца назад | |||
CVE-2026-34486 Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue. | CVSS3: 7.5 | 99% Критический | 5 месяцев назад | |
CVE-2026-34486 Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue. | CVSS3: 7.5 | 99% Критический | 5 месяцев назад | |
CVE-2026-34486 Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor. This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue. | CVSS3: 7.5 | 99% Критический | 5 месяцев назад | |
CVE-2026-34486 Missing Encryption of Sensitive Data vulnerability in Apache Tomcat du ... | CVSS3: 7.5 | 99% Критический | 5 месяцев назад | |
CVE-2026-29146 Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue. | CVSS3: 7.5 | 9% Низкий | 5 месяцев назад |
Уязвимостей на страницу