Package impact

java Maven / org.apache.tomcat:tomcat-catalina

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-24813 medium 8.0 1y ago Apache Tomcat contains a path equivalence vulnerability that allows a remote attacker to execute code, disclose information, or inject malicious content via a partial PUT request.
CVE-2024-50379 medium 5.5 11mo ago Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability during JSP compilation in Apache Tomcat permits an RCE on case insensitive file systems when the default servlet is enabled for write (…
CVE-2023-28708 medium 5.5 3y ago When using the RemoteIpFilter with requests received from a reverse proxy via HTTP that include the X-Forwarded-Proto header set to https, session cookies created by Apache Tomcat 11.0.0-M1 to …
CVE-2025-61795 medium 5.3 5.3 7mo ago Improper Resource Shutdown or Release vulnerability in Apache Tomcat. If an error occurred (including exceeding limits) during the processing of a multipart upload, temporary copies of the uploaded …
CVE-2012-5886 medium 5.0 14y ago Improper Authentication in Apache Tomcat
CVE-2014-0119 medium 4.3 12y ago Missing XML Validation in Apache Tomcat
CVE-2014-0096 medium 4.3 12y ago Improper Input Validation in Apache Tomcat