Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 22

Количество 22

fstec логотип

BDU:2026-05104

5 месяцев назад

Уязвимость компонента OCSP сервера приложений Apache Tomcat, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0014

3 месяца назад

Уязвимость tomcat-native

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0013

3 месяца назад

Уязвимость tomcat11

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0012

3 месяца назад

Уязвимость tomcat

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260506-73-0011

3 месяца назад

Уязвимость tomcat10

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-24734

5 месяцев назад

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-24734

5 месяцев назад

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2026-24734

5 месяцев назад

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-24734

5 месяцев назад

Improper Input Validation vulnerability in Apache Tomcat Native, Apach ...

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:26323

около 1 месяца назад

Important: tomcat security update

EPSS: Низкий
rocky логотип

RLSA-2026:19054

2 месяца назад

Important: tomcat security update

EPSS: Низкий
github логотип

GHSA-mgp5-rv84-w37q

5 месяцев назад

Apache Tomcat has an Improper Input Validation vulnerability

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-26323

около 1 месяца назад

ELSA-2026-26323: tomcat security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25341

8 дней назад

ELSA-2026-25341: tomcat9 update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19054

23 дня назад

ELSA-2026-19054: tomcat security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20414-1

4 месяца назад

Security update for tomcat11

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20350-1

5 месяцев назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0932-1

4 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0890-1

5 месяцев назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0877-1

5 месяцев назад

Security update for tomcat11

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-05104

Уязвимость компонента OCSP сервера приложений Apache Tomcat, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
0%
Низкий
5 месяцев назад
redos логотип
ROS-20260506-73-0014

Уязвимость tomcat-native

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0013

Уязвимость tomcat11

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0012

Уязвимость tomcat

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0011

Уязвимость tomcat10

CVSS3: 7.5
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-24734

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-24734

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-24734

Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verification or freshness checks on the OCSP response which could allow certificate revocation to be bypassed. This issue affects Apache Tomcat Native:  from 1.3.0 through 1.3.4, from 2.0.0 through 2.0.11; Apache Tomcat: from 11.0.0-M1 through 11.0.17, from 10.1.0-M7 through 10.1.51, from 9.0.83 through 9.0.114. The following versions were EOL at the time the CVE was created but are known to be affected: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39. Older EOL versions are not affected. Apache Tomcat Native users are recommended to upgrade to versions 1.3.5 or later or 2.0.12 or later, which fix the issue. Apache Tomcat users are recommended to upgrade to versions 11.0.18 or later, 10.1.52 or later or 9.0.115 or later which fix the issue.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-24734

Improper Input Validation vulnerability in Apache Tomcat Native, Apach ...

CVSS3: 7.5
0%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:26323

Important: tomcat security update

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:19054

Important: tomcat security update

0%
Низкий
2 месяца назад
github логотип
GHSA-mgp5-rv84-w37q

Apache Tomcat has an Improper Input Validation vulnerability

CVSS3: 7.5
0%
Низкий
5 месяцев назад
oracle-oval логотип
ELSA-2026-26323

ELSA-2026-26323: tomcat security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-25341

ELSA-2026-25341: tomcat9 update (IMPORTANT)

8 дней назад
oracle-oval логотип
ELSA-2026-19054

ELSA-2026-19054: tomcat security update (IMPORTANT)

23 дня назад
suse-cvrf логотип
openSUSE-SU-2026:20414-1

Security update for tomcat11

4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20350-1

Security update for tomcat

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0932-1

Security update for tomcat

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0890-1

Security update for tomcat10

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0877-1

Security update for tomcat11

5 месяцев назад

Уязвимостей на страницу