Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
629500
AlmaLinux
4656
Alpaquita
8853
Alpine
4049
Android
3261
Azure Linux
12016
BellSoft Hardened Containers
432
Bitnami
6983
Chainguard
5731
CleanStart
791
CRAN
14
crates.io
2232
Debian
54522
Echo
3188
GHC
3
GIT
81483
GitHub Actions
49
Go
6580
Hackage
30
Hex
57
Julia
513
Linux
15361
Mageia
5877
Maven
6325
MinimOS
26878
npm
217504
NuGet
1659
opam
12
openEuler
6386
openSUSE
12558
OSS-Fuzz
3835
Packagist
6082
Pub
11
PyPI
18697
Red Hat
19421
Rocky Linux
2948
Root
11970
RubyGems
1938
SUSE
20489
SwiftURL
50
Ubuntu
52357
VSCode
18
Wolfi
3681
ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-IS05941
CleanStart/thingsboard
CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native
19 hours ago
Fix available
Severity - 9.8 (Critical)
openSUSE-SU-2026:20595-1
openSUSE:Leap 16.0/tomcat11
Security update for tomcat11
2 days ago
Fix available
OESA-2026-1970
openEuler:20.03-LTS-SP4/tomcat
openEuler:22.03-LTS-SP4/tomcat
openEuler:24.03-LTS-SP1/tomcat
openEuler:24.03-LTS-SP2/tomcat
openEuler:24.03-LTS-SP3/tomcat
... 1 more
tomcat security update
6 days ago
Fix available
ROOT-APP-MAVEN-CVE-2026-34483
Root:Maven/io.root.org.apache.tomcat.embed:tomcat-embed-core
CVE-2026-34483 in io.root.org.apache.tomcat.embed:tomcat-embed-core - Patched by Root
6 days ago
Fix available
openSUSE-SU-2026:10547-1
openSUSE:Tumbleweed/tomcat
tomcat-9.0.117-1.1 on GA media
14 Apr
Fix available
openSUSE-SU-2026:10548-1
openSUSE:Tumbleweed/tomcat10
tomcat10-10.1.54-1.1 on GA media
14 Apr
Fix available
openSUSE-SU-2026:10549-1
openSUSE:Tumbleweed/tomcat11
tomcat11-11.0.21-1.1 on GA media
14 Apr
Fix available
BIT-tomcat-2026-34483
Bitnami/tomcat
Apache Tomcat: Incomplete escaping of JSON access logs
13 Apr
Fix available
Severity - 7.5 (High)
MGASA-2026-0095
Mageia:9/tomcat
Updated tomcat packages fix security vulnerabilities
12 Apr
Fix available
GHSA-rv64-5gf8-9qq8
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogValve
09 Apr
Fix available
Severity - 7.5 (High)
DEBIAN-CVE-2026-34483
Debian:11/tomcat9
Debian:12/tomcat10
Debian:12/tomcat9
Debian:13/tomcat10
Debian:13/tomcat11
... 4 more
See record for full details
09 Apr
Fix available
Severity - 7.5 (High)
UBUNTU-CVE-2026-34483
Ubuntu:16.04:LTS/tomcat6
Ubuntu:25.10/tomcat10
Ubuntu:25.10/tomcat11
Ubuntu:25.10/tomcat9
Ubuntu:Pro:14.04:LTS/tomcat6
... 10 more
See record for full details
09 Apr
No fix available
Severity - 7.5 (High)
Vulnerability Database - OSV