Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 16

Количество 16

github логотип

GHSA-5m62-pw8w-7w9f

3 месяца назад

Apache Tomcat - Security constraints not correctly applied

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2026-43515

3 месяца назад

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-43515

3 месяца назад

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-43515

3 месяца назад

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-43515

3 месяца назад

Improper Authorization vulnerability when multiple method constraints ...

CVSS3: 9.1
EPSS: Низкий
fstec логотип

BDU:2026-08080

3 месяца назад

Уязвимость сервера приложений Apache Tomcat, связанная c недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260605-73-0027

около 2 месяцев назад

Уязвимость tomcat11

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260605-73-0026

около 2 месяцев назад

Уязвимость tomcat10

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260605-73-0025

около 2 месяцев назад

Уязвимость tomcat

CVSS3: 9.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21122-1

около 1 месяца назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21121-1

около 1 месяца назад

Security update for tomcat11

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21117-1

около 1 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2675-1

около 1 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2377-1

около 2 месяцев назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2374-1

около 2 месяцев назад

Security update for tomcat11

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2299-1

около 2 месяцев назад

Security update for tomcat

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-5m62-pw8w-7w9f

Apache Tomcat - Security constraints not correctly applied

CVSS3: 9.1
1%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-43515

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 9.1
1%
Низкий
3 месяца назад
redhat логотип
CVE-2026-43515

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 5.4
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-43515

Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.22, 10.1.55 or 9.0.118 which fix the issue.

CVSS3: 9.1
1%
Низкий
3 месяца назад
debian логотип
CVE-2026-43515

Improper Authorization vulnerability when multiple method constraints ...

CVSS3: 9.1
1%
Низкий
3 месяца назад
fstec логотип
BDU:2026-08080

Уязвимость сервера приложений Apache Tomcat, связанная c недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 9.1
1%
Низкий
3 месяца назад
redos логотип
ROS-20260605-73-0027

Уязвимость tomcat11

CVSS3: 9.1
1%
Низкий
около 2 месяцев назад
redos логотип
ROS-20260605-73-0026

Уязвимость tomcat10

CVSS3: 9.1
1%
Низкий
около 2 месяцев назад
redos логотип
ROS-20260605-73-0025

Уязвимость tomcat

CVSS3: 9.1
1%
Низкий
около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:21122-1

Security update for tomcat10

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21121-1

Security update for tomcat11

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21117-1

Security update for tomcat

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2675-1

Security update for tomcat

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2377-1

Security update for tomcat10

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2374-1

Security update for tomcat11

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2299-1

Security update for tomcat

около 2 месяцев назад

Уязвимостей на страницу