Known Vulnerabilities for Apache Tomcat by Apache Software Foundation

Listed below are 10 of the newest known vulnerabilities associated with the software "Apache Tomcat" by "Apache Software Foundation".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-34305 In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 to 9.0.64 and 8.5.50 to 8.5.81 the Form authentication... Not Provided 2022-06-23 2022-07-29
CVE-2022-29885 The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 for t... Not Provided 2022-05-12 2022-07-25
CVE-2022-25762 If a web application sends a WebSocket message concurrently with the WebSocket connection closing when running on Apache Tomc... Not Provided 2022-05-13 2022-07-25
CVE-2022-23181 The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomcat 10.1.0-M1 to 10.1.0-M8... Not Provided 2022-01-27 2022-07-25
CVE-2021-42340 The fix for bug 63362 present in Apache Tomcat 10.1.0-M1 to 10.1.0-M5, 10.0.0-M1 to 10.0.11, 9.0.40 to 9.0.53 and 8.5.60 to 8... Not Provided 2021-10-14 2022-07-25
CVE-2020-36187 FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... Not Provided 2021-01-06 2022-07-25
CVE-2020-36186 FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... Not Provided 2021-01-06 2022-07-25
CVE-2020-36185 FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... Not Provided 2021-01-06 2022-07-25
CVE-2020-36184 FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... Not Provided 2021-01-06 2022-07-25
CVE-2020-36182 FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... Not Provided 2021-01-07 2022-07-25

Popular searches for Apache Tomcat

Welcome to The Apache Software Foundation!

www.apache.org

Welcome to The Apache Software Foundation! Home page of The Apache Software Foundation

www.green-energy.de a.st-hatena.com/go?http%3A%2F%2Fwww.apache.org%2F20200212004814= www.weblio.jp/redirect?etd=cfbc655c1221f750&url=http%3A%2F%2Fwww.apache.org%2F The Apache Software Foundation Apache License Apache HTTP Server Open-source software Twitter Software Source code Software license Apache Incubator Source lines of code ApacheCon FAQ Free software movement Petabyte Process (computing) Google Summer of Code Email Apache Tomcat Apache PDFBox ZDNet

Apache Tomcat® - Welcome!

tomcat.apache.org

Apache Tomcat - Welcome! Tomcat P N L 10 and later implement specifications developed as part of Jakarta EE. The Apache Tomcat software R P N is developed in an open and participatory environment and released under the Apache License version 2. The Apache Tomcat j h f project is intended to be a collaboration of the best-of-breed developers from around the world. The Apache Tomcat C A ? Project is proud to announce the release of version 8.5.68 of Apache Tomcat 6 4 2. The notable changes compared to 8.5.66 include:.

jakarta.apache.org/tomcat jakarta.apache.org/tomcat a.st-hatena.com/go?http%3A%2F%2Ftomcat.apache.org%2F20210208183732= jakarta.apache.org/tomcat freshmeat.sourceforge.net/urls/9c01744917e2e805b49c7612ebdf18f5 a.st-hatena.com/go?http%3A%2F%2Ftomcat.apache.org%2F20210312043845= bernd-zuther.de/go/tomcat jakarta.apache.org/tomcat Apache Tomcat Java Platform, Enterprise Edition Software Apache License Specification (technical standard) Computing platform Programmer Changelog Java version history Apache Maven Software release life cycle Web application Plug-in (computing) HTTP/2 The Apache Software Foundation Class (computer programming) IPv6 Apache HTTP Server Software bug Wiki

© CVE.report 2022 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report