tomcat-jsvc vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the tomcat-jsvc package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Integer Overflow or Wraparound

<0:7.0.76-10.amzn2.0.14
  • H
Allocation of Resources Without Limits or Throttling

<0:7.0.76-10.amzn2.0.12
  • M
Allocation of Resources Without Limits or Throttling

<0:7.0.76-10.amzn2.0.13
  • L
Resource Exhaustion

<0:7.0.76-10.amzn2.0.11
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.10
  • H
Incomplete Cleanup

<0:7.0.76-10.amzn2.0.10
  • H
Path Equivalence

<0:7.0.76-10.amzn2.0.10
  • H
Incomplete Cleanup

<0:7.0.76-10.amzn2.0.8
  • H
Allocation of Resources Without Limits or Throttling

<0:7.0.76-10.amzn2.0.9
  • H
Off-by-one Error

<0:7.0.76-10.amzn2.0.9
  • H
Improper Input Validation

<0:7.0.76-10.amzn2.0.7
  • M
HTTP Request Smuggling

<0:7.0.76-10.amzn2.0.6
  • M
Cross-site Scripting (XSS)

<0:7.0.76-10.amzn2.0.5
  • H
Resource Exhaustion

<0:7.0.76-10.amzn2.0.4
  • H
Session Fixation

<0:7.0.76-10.amzn2.0.4
  • H
Improper Access Control

<0:7.0.76-10.amzn2.0.4
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.3
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.3
  • H
Deserialization of Untrusted Data

<0:7.0.76-10.amzn2.0.2
  • H
CVE-2018-1305

<0:7.0.76-10.amzn2.0.1
  • H
Improper Certificate Validation

<0:7.0.76-10.amzn2.0.1
  • H
Improper Privilege Management

<0:7.0.76-10.amzn2.0.1
  • H
Insecure Default Initialization of Resource

<0:7.0.76-10.amzn2.0.1
  • H
CVE-2018-1304

<0:7.0.76-10.amzn2.0.1
  • M
Open Redirect

<0:7.0.76-9.amzn2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:7.0.76-8.amzn2