Количество 1 429
Количество 1 429
GHSA-5cw4-ggx9-36vg
Apache Tomcat Denial of Service via Malformed Request Headers
GHSA-5c5p-jxvx-x7j2
Apache Tomcat vulnerable to Cross-site Scripting
GHSA-58hj-575g-5j25
Apache Tomcat allows webmasters to insert xss into error messages
GHSA-563x-q5rq-57qp
Apache Tomcat has an HTTP Request/Response Smuggling vulnerability
GHSA-4x29-79gh-6v8q
Detection of Error Condition Without Action vulnerability in Apache Tomcat when configuring CRLs for a FFM based connector. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.22, from 10.1.0-M7 through 10.1.55, from 9.0.83 through 9.0.118. Users are recommended to upgrade to version 11.0.23, 10.1.56 or 9.0.119, which fixes the issue.
GHSA-4j3c-42xv-3f84
Apache Tomcat is vulnerable to resource exhaustion when using the APR/Native connector
GHSA-4gr9-99j3-vqxv
Apache Tomcat Directory Traversal
GHSA-4f7h-9j2x-cmr4
Improper Authentication in Apache Tomcat
GHSA-4c6x-gfc8-c26r
Apache Tomcat Vulnerable to Cross-Site Scripting
GHSA-4c43-cwvx-9crh
Improper Access Control in Apache Tomcat
GHSA-475f-74wp-pqv5
Integer Overflow or Wraparound in Apache Tomcat
GHSA-43v2-6grp-9pp9
Apache Tomcat does not enforce the maxHttpHeaderSize limit
GHSA-42wg-hm62-jcwg
Apache Tomcat installer for Windows has an untrusted search path vulnerability
GHSA-42j3-498q-m6vp
Improper Input Validation in Apache Tomcat
GHSA-3xpj-jgv5-q4vv
Access restriction bypass in Apache Tomcat
GHSA-3vx3-xf6q-r5xp
Exposure of Resource to Wrong Sphere in Apache Tomcat
GHSA-3vp9-jf7f-cv3c
Apache Tomcat before 5.x allows remote attackers to cause a denial of service (application crash) via a crafted AJP12 packet to TCP port 8007.
GHSA-3p86-xgrq-m6p6
Improper Neutralization of Input During Web Page Generation in Apache Tomcat
GHSA-3p5r-7cw3-2m67
Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
GHSA-3p2h-wqq4-wf4h
Apache Tomcat Denial of Service via invalid HTTP priority header
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-5cw4-ggx9-36vg Apache Tomcat Denial of Service via Malformed Request Headers | 10% Средний | около 4 лет назад | ||
GHSA-5c5p-jxvx-x7j2 Apache Tomcat vulnerable to Cross-site Scripting | 3% Низкий | около 4 лет назад | ||
GHSA-58hj-575g-5j25 Apache Tomcat allows webmasters to insert xss into error messages | 12% Средний | больше 4 лет назад | ||
GHSA-563x-q5rq-57qp Apache Tomcat has an HTTP Request/Response Smuggling vulnerability | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
GHSA-4x29-79gh-6v8q Detection of Error Condition Without Action vulnerability in Apache Tomcat when configuring CRLs for a FFM based connector. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.22, from 10.1.0-M7 through 10.1.55, from 9.0.83 through 9.0.118. Users are recommended to upgrade to version 11.0.23, 10.1.56 or 9.0.119, which fixes the issue. | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
GHSA-4j3c-42xv-3f84 Apache Tomcat is vulnerable to resource exhaustion when using the APR/Native connector | CVSS3: 7.5 | 2% Низкий | около 1 года назад | |
GHSA-4gr9-99j3-vqxv Apache Tomcat Directory Traversal | 3% Низкий | больше 4 лет назад | ||
GHSA-4f7h-9j2x-cmr4 Improper Authentication in Apache Tomcat | 8% Низкий | около 4 лет назад | ||
GHSA-4c6x-gfc8-c26r Apache Tomcat Vulnerable to Cross-Site Scripting | 58% Средний | около 4 лет назад | ||
GHSA-4c43-cwvx-9crh Improper Access Control in Apache Tomcat | 14% Средний | около 4 лет назад | ||
GHSA-475f-74wp-pqv5 Integer Overflow or Wraparound in Apache Tomcat | 20% Средний | около 4 лет назад | ||
GHSA-43v2-6grp-9pp9 Apache Tomcat does not enforce the maxHttpHeaderSize limit | CVSS3: 7.5 | 8% Низкий | около 4 лет назад | |
GHSA-42wg-hm62-jcwg Apache Tomcat installer for Windows has an untrusted search path vulnerability | 0% Низкий | около 1 года назад | ||
GHSA-42j3-498q-m6vp Improper Input Validation in Apache Tomcat | 21% Средний | около 4 лет назад | ||
GHSA-3xpj-jgv5-q4vv Access restriction bypass in Apache Tomcat | 6% Низкий | около 4 лет назад | ||
GHSA-3vx3-xf6q-r5xp Exposure of Resource to Wrong Sphere in Apache Tomcat | CVSS3: 9.1 | 13% Средний | около 4 лет назад | |
GHSA-3vp9-jf7f-cv3c Apache Tomcat before 5.x allows remote attackers to cause a denial of service (application crash) via a crafted AJP12 packet to TCP port 8007. | 23% Средний | около 4 лет назад | ||
GHSA-3p86-xgrq-m6p6 Improper Neutralization of Input During Web Page Generation in Apache Tomcat | 10% Средний | около 4 лет назад | ||
GHSA-3p5r-7cw3-2m67 Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | 7% Низкий | около 4 лет назад | ||
GHSA-3p2h-wqq4-wf4h Apache Tomcat Denial of Service via invalid HTTP priority header | 60% Средний | больше 1 года назад |
Уязвимостей на страницу