Known Vulnerabilities for Tomcat by Apache Software Foundation
Listed below are 4 of the newest known vulnerabilities associated with "Tomcat" by "Apache Software Foundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-28228 | OpenOlat is an open source web-based e-learning platform for teaching, learning, assessment and communication. Prior to versi... | Not Provided | 2026-03-30 | 2026-03-31 |
| CVE-2008-2938 | Directory traversal vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16, when... | 4.3 - MEDIUM | 2008-08-13 | 2023-11-07 |
| CVE-2008-1232 | Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.1... | 4.3 - MEDIUM | 2008-08-04 | 2023-02-13 |
| CVE-2007-5333 | Apache Tomcat 6.0.0 through 6.0.14, 5.5.0 through 5.5.25, and 4.1.0 through 4.1.36 does not properly handle (1) double quote ... | 5 - MEDIUM | 2008-02-12 | 2023-11-07 |
| CVE-2005-3164 | The AJP connector in Apache Tomcat 4.0.1 through 4.0.6 and 4.1.0 through 4.1.36, as used in Hitachi Cosminexus Application Se... | 2.6 - LOW | 2005-10-06 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache Software Foundation | Tomcat | 4.1.8 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.7 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.6 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.5 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.4 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.33 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.30 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.27 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.26 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.25 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.23 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.22 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.21 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.20 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.19 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.18 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.17 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.16 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.14 | All | All | All |
| Application | Apache Software Foundation | Tomcat | 4.1.13 | All | All | All |