| CVE-2023-44487 |
high |
7.5 |
9.0 |
3y ago |
Moderate: nginx:1.22 security update |
+12 |
| CVE-2026-24880 |
high |
— |
8.0 |
2mo ago |
Apache Tomcat has an HTTP Request/Response Smuggling vulnerability |
|
| CVE-2026-29129 |
high |
— |
8.0 |
2mo ago |
Apache Tomcat: Configured cipher preference order not preserved |
|
| CVE-2019-0199 |
high |
— |
8.0 |
6y ago |
Apache Tomcat Denial of Service vulnerability |
|
| CVE-2020-9484 |
high |
— |
8.0 |
6y ago |
Potential remote code execution in Apache Tomcat |
|
| CVE-2026-43513 |
high |
7.5 |
7.5 |
16d ago |
Apache Tomcat: LockOutRealm treats user names as case-sensitive |
|
| CVE-2026-41284 |
high |
7.5 |
7.5 |
16d ago |
Apache Tomcat: Unbounded read in WebDAV LOCK and PROPFIND handling |
|
| CVE-2025-55752 |
high |
7.5 |
7.5 |
6mo ago |
Apache Tomcat Vulnerable to Relative Path Traversal |
+2 |
| CVE-2025-48989 |
high |
7.5 |
7.5 |
9mo ago |
Apache Tomcat Improper Resource Shutdown or Release vulnerability |
+2 |
| CVE-2026-42498 |
high |
7.3 |
7.3 |
16d ago |
Apache Tomcat - WebSocket authentication header exposure |
|
| CVE-2025-61795 |
medium |
5.3 |
5.3 |
7mo ago |
Apache Tomcat Vulnerable to Improper Resource Shutdown or Release |
|