Количество 22
Количество 22
CVE-2026-29145
CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.
CVE-2026-29145
CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.
CVE-2026-29145
CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.
CVE-2026-29145
CLIENT_CERT authentication does not fail as expected for some scenario ...
ROS-20260506-80-0029
Уязвимость tomcat-native
ROS-20260506-80-0028
Уязвимость tomcat11
ROS-20260506-80-0027
Уязвимость tomcat10
ROS-20260506-80-0026
Уязвимость tomcat
GHSA-95jq-rwvf-vjx4
Apache Tomcat: CLIENT_CERT authentication does not fail as expected
BDU:2026-06931
Уязвимость сервера приложений Apache Tomcat, связанная с недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии
ROS-20260506-73-0030
Уязвимость tomcat-native
ROS-20260506-73-0029
Уязвимость tomcat11
ROS-20260506-73-0028
Уязвимость tomcat10
ROS-20260506-73-0027
Уязвимость tomcat
openSUSE-SU-2026:20612-1
Security update for tomcat10
openSUSE-SU-2026:20611-1
Security update for tomcat
openSUSE-SU-2026:20595-1
Security update for tomcat11
SUSE-SU-2026:1604-1
Security update for tomcat
SUSE-SU-2026:1603-1
Security update for tomcat10
SUSE-SU-2026:1572-1
Security update for tomcat
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-29145 CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue. | CVSS3: 9.1 | 1% Низкий | 5 месяцев назад | |
CVE-2026-29145 CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue. | CVSS3: 5.9 | 1% Низкий | 5 месяцев назад | |
CVE-2026-29145 CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue. | CVSS3: 9.1 | 1% Низкий | 5 месяцев назад | |
CVE-2026-29145 CLIENT_CERT authentication does not fail as expected for some scenario ... | CVSS3: 9.1 | 1% Низкий | 5 месяцев назад | |
ROS-20260506-80-0029 Уязвимость tomcat-native | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-80-0028 Уязвимость tomcat11 | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-80-0027 Уязвимость tomcat10 | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-80-0026 Уязвимость tomcat | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
GHSA-95jq-rwvf-vjx4 Apache Tomcat: CLIENT_CERT authentication does not fail as expected | CVSS3: 9.1 | 1% Низкий | 5 месяцев назад | |
BDU:2026-06931 Уязвимость сервера приложений Apache Tomcat, связанная с недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии | CVSS3: 9.1 | 1% Низкий | 5 месяцев назад | |
ROS-20260506-73-0030 Уязвимость tomcat-native | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-73-0029 Уязвимость tomcat11 | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-73-0028 Уязвимость tomcat10 | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
ROS-20260506-73-0027 Уязвимость tomcat | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
openSUSE-SU-2026:20612-1 Security update for tomcat10 | 5 месяцев назад | |||
openSUSE-SU-2026:20611-1 Security update for tomcat | 5 месяцев назад | |||
openSUSE-SU-2026:20595-1 Security update for tomcat11 | 5 месяцев назад | |||
SUSE-SU-2026:1604-1 Security update for tomcat | 5 месяцев назад | |||
SUSE-SU-2026:1603-1 Security update for tomcat10 | 5 месяцев назад | |||
SUSE-SU-2026:1572-1 Security update for tomcat | 5 месяцев назад |
Уязвимостей на страницу