Apache Tomcat Security Restriction Bypass Vulnerability
Release Date: 20 Feb 2026
RISK: Medium Risk
TYPE: Servers - Web Servers
A vulnerability has been identified in Apache Tomcat. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targeted system.
Impact
- Security Restriction Bypass
System / Technologies affected
- Apache Tomcat version 9.0.83 to 9.0.114
- Apache Tomcat version 10.1.0-M7 to 10.1.51
- Apache Tomcat version 11.0.0-M1 to 11.0.17
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://tomcat.apache.org/security-9.html#Fixed_in_Apache_Tomcat_9.0.115
- https://tomcat.apache.org/security-10.html#Fixed_in_Apache_Tomcat_10.1.52
- https://tomcat.apache.org/security-11.html#Fixed_in_Apache_Tomcat_11.0.18
沒有留言:
發佈留言