Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-IS05941
  • CleanStart/thingsboard
CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat, Apache Tomcat Native 19 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
openSUSE-SU-2026:20595-1
  • openSUSE:Leap 16.0/tomcat11
Security update for tomcat11 2 days ago
  • Fix available
OESA-2026-1970
  • openEuler:20.03-LTS-SP4/tomcat
  • openEuler:22.03-LTS-SP4/tomcat
  • openEuler:24.03-LTS-SP1/tomcat
  • openEuler:24.03-LTS-SP2/tomcat
  • openEuler:24.03-LTS-SP3/tomcat
  • ... 1 more
tomcat security update 6 days ago
  • Fix available
ROOT-APP-MAVEN-CVE-2026-34483
  • Root:Maven/io.root.org.apache.tomcat.embed:tomcat-embed-core
CVE-2026-34483 in io.root.org.apache.tomcat.embed:tomcat-embed-core - Patched by Root 6 days ago
  • Fix available
openSUSE-SU-2026:10547-1
  • openSUSE:Tumbleweed/tomcat
tomcat-9.0.117-1.1 on GA media 14 Apr
  • Fix available
openSUSE-SU-2026:10548-1
  • openSUSE:Tumbleweed/tomcat10
tomcat10-10.1.54-1.1 on GA media 14 Apr
  • Fix available
openSUSE-SU-2026:10549-1
  • openSUSE:Tumbleweed/tomcat11
tomcat11-11.0.21-1.1 on GA media 14 Apr
  • Fix available
BIT-tomcat-2026-34483
  • Bitnami/tomcat
Apache Tomcat: Incomplete escaping of JSON access logs 13 Apr
  • Fix available
  • Severity - 7.5 (High)
MGASA-2026-0095
  • Mageia:9/tomcat
Updated tomcat packages fix security vulnerabilities 12 Apr
  • Fix available
GHSA-rv64-5gf8-9qq8
  • Maven/org.apache.tomcat.embed:tomcat-embed-core
  • Maven/org.apache.tomcat:tomcat
  • Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogValve 09 Apr
  • Fix available
  • Severity - 7.5 (High)
DEBIAN-CVE-2026-34483
  • Debian:11/tomcat9
  • Debian:12/tomcat10
  • Debian:12/tomcat9
  • Debian:13/tomcat10
  • Debian:13/tomcat11
  • ... 4 more
See record for full details 09 Apr
  • Fix available
  • Severity - 7.5 (High)
UBUNTU-CVE-2026-34483
  • Ubuntu:16.04:LTS/tomcat6
  • Ubuntu:25.10/tomcat10
  • Ubuntu:25.10/tomcat11
  • Ubuntu:25.10/tomcat9
  • Ubuntu:Pro:14.04:LTS/tomcat6
  • ... 10 more
See record for full details 09 Apr
  • No fix available
  • Severity - 7.5 (High)