Количество 19
Количество 19
BDU:2026-11888
Уязвимость компонента RewriteValve сервера приложений Apache Tomcat, позволяющая нарушителю обойти существующие механизмы безопасности
ROS-20260819-73-0064
Уязвимость tomcat11
ROS-20260819-73-0063
Уязвимость tomcat10
ROS-20260819-73-0062
Уязвимость tomcat
CVE-2026-59083
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue.
CVE-2026-59083
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue.
CVE-2026-59083
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue.
CVE-2026-59083
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apac ...
ROS-20260819-80-0064
Уязвимость tomcat11
ROS-20260819-80-0063
Уязвимость tomcat10
ROS-20260819-80-0062
Уязвимость tomcat
GHSA-hcjr-322h-429r
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue.
openSUSE-SU-2026:21490-1
Security update for tomcat11
openSUSE-SU-2026:21487-1
Security update for tomcat10
openSUSE-SU-2026:21486-1
Security update for tomcat
SUSE-SU-2026:3440-1
Security update for tomcat
SUSE-SU-2026:3430-1
Security update for tomcat11
SUSE-SU-2026:3419-1
Security update for tomcat
SUSE-SU-2026:3418-1
Security update for tomcat10
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-11888 Уязвимость компонента RewriteValve сервера приложений Apache Tomcat, позволяющая нарушителю обойти существующие механизмы безопасности | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
ROS-20260819-73-0064 Уязвимость tomcat11 | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
ROS-20260819-73-0063 Уязвимость tomcat10 | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
ROS-20260819-73-0062 Уязвимость tomcat | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
CVE-2026-59083 Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-59083 Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue. | CVSS3: 3.7 | 0% Низкий | 2 месяца назад | |
CVE-2026-59083 Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
CVE-2026-59083 Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apac ... | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
ROS-20260819-80-0064 Уязвимость tomcat11 | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
ROS-20260819-80-0063 Уязвимость tomcat10 | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
ROS-20260819-80-0062 Уязвимость tomcat | CVSS3: 9.1 | 0% Низкий | 27 дней назад | |
GHSA-hcjr-322h-429r Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.0.M1 through 9.0.119, from 8.5.0 through 8.5.100. Other versions that have reached end of support may also be affected. Users are recommended to upgrade to version 11.0.24, 10.1.57 or 9.0.120, which fix the issue. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
openSUSE-SU-2026:21490-1 Security update for tomcat11 | около 2 месяцев назад | |||
openSUSE-SU-2026:21487-1 Security update for tomcat10 | около 2 месяцев назад | |||
openSUSE-SU-2026:21486-1 Security update for tomcat | около 2 месяцев назад | |||
SUSE-SU-2026:3440-1 Security update for tomcat | около 2 месяцев назад | |||
SUSE-SU-2026:3430-1 Security update for tomcat11 | около 2 месяцев назад | |||
SUSE-SU-2026:3419-1 Security update for tomcat | около 2 месяцев назад | |||
SUSE-SU-2026:3418-1 Security update for tomcat10 | около 2 месяцев назад |
Уязвимостей на страницу