Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 18

Количество 18

github логотип

GHSA-95jq-rwvf-vjx4

4 месяца назад

Apache Tomcat: CLIENT_CERT authentication does not fail as expected

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2026-29145

4 месяца назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-29145

4 месяца назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-29145

4 месяца назад

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-29145

4 месяца назад

CLIENT_CERT authentication does not fail as expected for some scenario ...

CVSS3: 9.1
EPSS: Низкий
fstec логотип

BDU:2026-06931

4 месяца назад

Уязвимость сервера приложений Apache Tomcat, связанная с недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260506-73-0030

3 месяца назад

Уязвимость tomcat-native

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260506-73-0029

3 месяца назад

Уязвимость tomcat11

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260506-73-0028

3 месяца назад

Уязвимость tomcat10

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260506-73-0027

3 месяца назад

Уязвимость tomcat

CVSS3: 9.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20612-1

3 месяца назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20611-1

3 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20595-1

3 месяца назад

Security update for tomcat11

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1604-1

3 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1603-1

3 месяца назад

Security update for tomcat10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1572-1

3 месяца назад

Security update for tomcat

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1558-1

3 месяца назад

Security update for tomcat11

EPSS: Низкий
rocky логотип

RLSA-2026:36790

21 день назад

Important: tomcat9 security, bug fix, and enhancement update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-95jq-rwvf-vjx4

Apache Tomcat: CLIENT_CERT authentication does not fail as expected

CVSS3: 9.1
1%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-29145

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 9.1
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-29145

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 5.9
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-29145

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.1.0-M7 through 10.1.52, from 9.0.83 through 9.0.115; Apache Tomcat Native: from 1.1.23 through 1.1.34, from 1.2.0 through 1.2.39, from 1.3.0 through 1.3.6, from 2.0.0 through 2.0.13. Users are recommended to upgrade to version Tomcat Native 1.3.7 or 2.0.14 and Tomcat 11.0.20, 10.1.53 and 9.0.116, which fix the issue.

CVSS3: 9.1
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-29145

CLIENT_CERT authentication does not fail as expected for some scenario ...

CVSS3: 9.1
1%
Низкий
4 месяца назад
fstec логотип
BDU:2026-06931

Уязвимость сервера приложений Apache Tomcat, связанная с недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии

CVSS3: 9.1
1%
Низкий
4 месяца назад
redos логотип
ROS-20260506-73-0030

Уязвимость tomcat-native

CVSS3: 9.1
1%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0029

Уязвимость tomcat11

CVSS3: 9.1
1%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0028

Уязвимость tomcat10

CVSS3: 9.1
1%
Низкий
3 месяца назад
redos логотип
ROS-20260506-73-0027

Уязвимость tomcat

CVSS3: 9.1
1%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20612-1

Security update for tomcat10

3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20611-1

Security update for tomcat

3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20595-1

Security update for tomcat11

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1604-1

Security update for tomcat

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1603-1

Security update for tomcat10

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1572-1

Security update for tomcat

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1558-1

Security update for tomcat11

3 месяца назад
rocky логотип
RLSA-2026:36790

Important: tomcat9 security, bug fix, and enhancement update

21 день назад

Уязвимостей на страницу