Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 17

Количество 17

ubuntu логотип

CVE-2026-34500

5 месяцев назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-34500

5 месяцев назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-34500

5 месяцев назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-34500

5 месяцев назад

CLIENT_CERT authentication does not fail as expected for some scenario ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-24j9-x2wg-9qv6

5 месяцев назад

Apache Tomcat: CLIENT_CERT authentication does not fail as expected

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-07146

5 месяцев назад

Уязвимость сервера приложений Apache Tomcat, связанная c недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0039

4 месяца назад

Уязвимость tomcat11

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0038

4 месяца назад

Уязвимость tomcat10

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0037

4 месяца назад

Уязвимость tomcat

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20612-1

5 месяцев назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20611-1

5 месяцев назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20595-1

5 месяцев назад

Security update for tomcat11

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1604-1

5 месяцев назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1603-1

5 месяцев назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1572-1

5 месяцев назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1558-1

5 месяцев назад

Security update for tomcat11

EPSS: Низкий
rocky логотип

RLSA-2026:36790

2 месяца назад

Important: tomcat9 security, bug fix, and enhancement update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-34500

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-34500

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 5.9
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-34500

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled and FFM is used in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.20, from 10.1.22 through 10.1.53, from 9.0.92 through 9.0.116. Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fixes the issue.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-34500

CLIENT_CERT authentication does not fail as expected for some scenario ...

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-24j9-x2wg-9qv6

Apache Tomcat: CLIENT_CERT authentication does not fail as expected

CVSS3: 6.5
0%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-07146

Уязвимость сервера приложений Apache Tomcat, связанная c недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.5
0%
Низкий
5 месяцев назад
redos логотип
ROS-20260506-73-0039

Уязвимость tomcat11

CVSS3: 6.5
0%
Низкий
4 месяца назад
redos логотип
ROS-20260506-73-0038

Уязвимость tomcat10

CVSS3: 6.5
0%
Низкий
4 месяца назад
redos логотип
ROS-20260506-73-0037

Уязвимость tomcat

CVSS3: 6.5
0%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20612-1

Security update for tomcat10

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20611-1

Security update for tomcat

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20595-1

Security update for tomcat11

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1604-1

Security update for tomcat

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1603-1

Security update for tomcat10

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1572-1

Security update for tomcat

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1558-1

Security update for tomcat11

5 месяцев назад
rocky логотип
RLSA-2026:36790

Important: tomcat9 security, bug fix, and enhancement update

2 месяца назад

Уязвимостей на страницу