Количество 24
Количество 24
BDU:2026-05543
Уязвимость сервера приложений Apache Tomcat, связанная с недостатками механизма формирования отчетов об ошибках, позволяющая нарушителю осуществить атаку типа Padding Oracle (атаку с использованием «заполнения»)
ROS-20260507-73-0011
Уязвимость tomcat11
ROS-20260507-73-0010
Уязвимость tomcat10
ROS-20260507-73-0009
Уязвимость tomcat
CVE-2026-29146
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue.
CVE-2026-29146
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue.
CVE-2026-29146
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue.
CVE-2026-29146
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor wit ...
GHSA-h468-7pvh-8vr8
Apache Tomcat: Padding Oracle vulnerability in EncryptInterceptor
RLSA-2026:37137
Important: tomcat security, bug fix, and enhancement update
RLSA-2026:36879
Important: tomcat security, bug fix, and enhancement update
RLSA-2026:36788
Important: tomcat security, bug fix, and enhancement update
ELSA-2026-37137
ELSA-2026-37137: tomcat security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36879
ELSA-2026-36879: tomcat security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36790
ELSA-2026-36790: tomcat9 security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36788
ELSA-2026-36788: tomcat security, bug fix, and enhancement update (IMPORTANT)
openSUSE-SU-2026:20612-1
Security update for tomcat10
openSUSE-SU-2026:20611-1
Security update for tomcat
openSUSE-SU-2026:20595-1
Security update for tomcat11
SUSE-SU-2026:1604-1
Security update for tomcat
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05543 Уязвимость сервера приложений Apache Tomcat, связанная с недостатками механизма формирования отчетов об ошибках, позволяющая нарушителю осуществить атаку типа Padding Oracle (атаку с использованием «заполнения») | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
ROS-20260507-73-0011 Уязвимость tomcat11 | CVSS3: 7.5 | 6% Низкий | 3 месяца назад | |
ROS-20260507-73-0010 Уязвимость tomcat10 | CVSS3: 7.5 | 6% Низкий | 3 месяца назад | |
ROS-20260507-73-0009 Уязвимость tomcat | CVSS3: 7.5 | 6% Низкий | 3 месяца назад | |
CVE-2026-29146 Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue. | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
CVE-2026-29146 Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue. | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
CVE-2026-29146 Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 through 8.5.100, from 7.0.100 through 7.0.109. Users are recommended to upgrade to version 11.0.19, 10.1.53 and 9.0.116, which fixes the issue. | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
CVE-2026-29146 Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor wit ... | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
GHSA-h468-7pvh-8vr8 Apache Tomcat: Padding Oracle vulnerability in EncryptInterceptor | CVSS3: 7.5 | 6% Низкий | 4 месяца назад | |
RLSA-2026:37137 Important: tomcat security, bug fix, and enhancement update | 21 день назад | |||
RLSA-2026:36879 Important: tomcat security, bug fix, and enhancement update | 21 день назад | |||
RLSA-2026:36788 Important: tomcat security, bug fix, and enhancement update | 21 день назад | |||
ELSA-2026-37137 ELSA-2026-37137: tomcat security, bug fix, and enhancement update (IMPORTANT) | 22 дня назад | |||
ELSA-2026-36879 ELSA-2026-36879: tomcat security, bug fix, and enhancement update (IMPORTANT) | 23 дня назад | |||
ELSA-2026-36790 ELSA-2026-36790: tomcat9 security, bug fix, and enhancement update (IMPORTANT) | 15 дней назад | |||
ELSA-2026-36788 ELSA-2026-36788: tomcat security, bug fix, and enhancement update (IMPORTANT) | 15 дней назад | |||
openSUSE-SU-2026:20612-1 Security update for tomcat10 | 3 месяца назад | |||
openSUSE-SU-2026:20611-1 Security update for tomcat | 3 месяца назад | |||
openSUSE-SU-2026:20595-1 Security update for tomcat11 | 3 месяца назад | |||
SUSE-SU-2026:1604-1 Security update for tomcat | 3 месяца назад |
Уязвимостей на страницу