tomcat-webapps vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the tomcat-webapps package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Path Equivalence

<0:7.0.76-10.amzn2.0.10
  • H
Incomplete Cleanup

<0:7.0.76-10.amzn2.0.10
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.10
  • H
Allocation of Resources Without Limits or Throttling

<0:7.0.76-10.amzn2.0.9
  • H
Incomplete Cleanup

<0:7.0.76-10.amzn2.0.8
  • H
Off-by-one Error

<0:7.0.76-10.amzn2.0.9
  • H
Improper Input Validation

<0:7.0.76-10.amzn2.0.7
  • M
HTTP Request Smuggling

<0:7.0.76-10.amzn2.0.6
  • M
Cross-site Scripting (XSS)

<0:7.0.76-10.amzn2.0.5
  • H
Resource Exhaustion

<0:7.0.76-10.amzn2.0.4
  • H
Session Fixation

<0:7.0.76-10.amzn2.0.4
  • H
Improper Access Control

<0:7.0.76-10.amzn2.0.4
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.3
  • H
Information Exposure

<0:7.0.76-10.amzn2.0.3
  • H
Deserialization of Untrusted Data

<0:7.0.76-10.amzn2.0.2
  • H
CVE-2018-1305

<0:7.0.76-10.amzn2.0.1
  • H
Improper Certificate Validation

<0:7.0.76-10.amzn2.0.1
  • H
Improper Privilege Management

<0:7.0.76-10.amzn2.0.1
  • H
Insecure Default Initialization of Resource

<0:7.0.76-10.amzn2.0.1
  • H
CVE-2018-1304

<0:7.0.76-10.amzn2.0.1
  • M
Open Redirect

<0:7.0.76-9.amzn2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:7.0.76-8.amzn2