Количество 1 093
Количество 1 093
GHSA-5x5f-9r6q-q7mh
Apache Tomcat Sensitive Information Disclosure
GHSA-5jpg-mjvg-hfhp
Apache Tomcat 5.5.0 and 4.1.0 through 4.1.31 allows remote attackers to bypass an IP address restriction and obtain sensitive information via a request that is processed concurrently with another request but in a different thread, leading to an instance-variable overwrite associated with a "synchronization problem" and lack of thread safety, and related to RemoteFilterValve, RemoteAddrValve, and RemoteHostValve.
GHSA-5hgm-qm5m-5vmw
Jakarta Tomcat cross-site scripting (XSS) vulnerability
GHSA-5cw4-ggx9-36vg
Apache Tomcat Denial of Service via Malformed Request Headers
GHSA-5c5p-jxvx-x7j2
Apache Tomcat vulnerable to Cross-site Scripting
GHSA-58hj-575g-5j25
Apache Tomcat allows webmasters to insert xss into error messages
GHSA-4gr9-99j3-vqxv
Apache Tomcat Directory Traversal
GHSA-4f7h-9j2x-cmr4
Improper Authentication in Apache Tomcat
GHSA-4c6x-gfc8-c26r
Apache Tomcat Vulnerable to Cross-Site Scripting
GHSA-4c43-cwvx-9crh
Improper Access Control in Apache Tomcat
GHSA-475f-74wp-pqv5
Integer Overflow or Wraparound in Apache Tomcat
GHSA-43v2-6grp-9pp9
Apache Tomcat does not enforce the maxHttpHeaderSize limit
GHSA-42j3-498q-m6vp
Improper Input Validation in Apache Tomcat
GHSA-3xpj-jgv5-q4vv
Access restriction bypass in Apache Tomcat
GHSA-3vx3-xf6q-r5xp
Exposure of Resource to Wrong Sphere in Apache Tomcat
GHSA-3vp9-jf7f-cv3c
Apache Tomcat before 5.x allows remote attackers to cause a denial of service (application crash) via a crafted AJP12 packet to TCP port 8007.
GHSA-3p86-xgrq-m6p6
Improper Neutralization of Input During Web Page Generation in Apache Tomcat
GHSA-3p5r-7cw3-2m67
Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
GHSA-3p2h-wqq4-wf4h
Apache Tomcat Denial of Service via invalid HTTP priority header
GHSA-3gv7-3h64-78cm
Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-5x5f-9r6q-q7mh Apache Tomcat Sensitive Information Disclosure | 4% Низкий | около 3 лет назад | ||
GHSA-5jpg-mjvg-hfhp Apache Tomcat 5.5.0 and 4.1.0 through 4.1.31 allows remote attackers to bypass an IP address restriction and obtain sensitive information via a request that is processed concurrently with another request but in a different thread, leading to an instance-variable overwrite associated with a "synchronization problem" and lack of thread safety, and related to RemoteFilterValve, RemoteAddrValve, and RemoteHostValve. | 4% Низкий | около 3 лет назад | ||
GHSA-5hgm-qm5m-5vmw Jakarta Tomcat cross-site scripting (XSS) vulnerability | 58% Средний | около 3 лет назад | ||
GHSA-5cw4-ggx9-36vg Apache Tomcat Denial of Service via Malformed Request Headers | 32% Средний | около 3 лет назад | ||
GHSA-5c5p-jxvx-x7j2 Apache Tomcat vulnerable to Cross-site Scripting | 0% Низкий | около 3 лет назад | ||
GHSA-58hj-575g-5j25 Apache Tomcat allows webmasters to insert xss into error messages | 1% Низкий | около 3 лет назад | ||
GHSA-4gr9-99j3-vqxv Apache Tomcat Directory Traversal | 4% Низкий | около 3 лет назад | ||
GHSA-4f7h-9j2x-cmr4 Improper Authentication in Apache Tomcat | 3% Низкий | около 3 лет назад | ||
GHSA-4c6x-gfc8-c26r Apache Tomcat Vulnerable to Cross-Site Scripting | 79% Высокий | около 3 лет назад | ||
GHSA-4c43-cwvx-9crh Improper Access Control in Apache Tomcat | 9% Низкий | около 3 лет назад | ||
GHSA-475f-74wp-pqv5 Integer Overflow or Wraparound in Apache Tomcat | 88% Высокий | около 3 лет назад | ||
GHSA-43v2-6grp-9pp9 Apache Tomcat does not enforce the maxHttpHeaderSize limit | CVSS3: 7.5 | 17% Средний | около 3 лет назад | |
GHSA-42j3-498q-m6vp Improper Input Validation in Apache Tomcat | 84% Высокий | около 3 лет назад | ||
GHSA-3xpj-jgv5-q4vv Access restriction bypass in Apache Tomcat | 2% Низкий | около 3 лет назад | ||
GHSA-3vx3-xf6q-r5xp Exposure of Resource to Wrong Sphere in Apache Tomcat | CVSS3: 9.1 | 22% Средний | около 3 лет назад | |
GHSA-3vp9-jf7f-cv3c Apache Tomcat before 5.x allows remote attackers to cause a denial of service (application crash) via a crafted AJP12 packet to TCP port 8007. | 18% Средний | около 3 лет назад | ||
GHSA-3p86-xgrq-m6p6 Improper Neutralization of Input During Web Page Generation in Apache Tomcat | 32% Средний | около 3 лет назад | ||
GHSA-3p5r-7cw3-2m67 Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | 7% Низкий | около 3 лет назад | ||
GHSA-3p2h-wqq4-wf4h Apache Tomcat Denial of Service via invalid HTTP priority header | 1% Низкий | около 2 месяцев назад | ||
GHSA-3gv7-3h64-78cm Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | CVSS3: 7.5 | 2% Низкий | около 3 лет назад |
Уязвимостей на страницу