tomcat9 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the tomcat9 package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Unchecked Error Condition dsfsdf

<9.0.70-2
  • L
Allocation of Resources Without Limits or Throttling dsfsdf

<9.0.70-2
  • L
Resource Exhaustion dsfsdf

<9.0.70-2
  • L
Incomplete Cleanup dsfsdf

<9.0.70-2
  • L
Improper Input Validation dsfsdf

<9.0.70-2
  • M
Information Exposure dsfsdf

<9.0.53-1
  • H
HTTP Request Smuggling dsfsdf

<9.0.70-2
  • M
Improper Input Validation dsfsdf

<9.0.70-2
  • M
Incomplete Cleanup dsfsdf

<9.0.70-2
  • H
CVE-2023-44487 dsfsdf

<9.0.70-2
  • M
Open Redirect dsfsdf

<9.0.70-2
  • M
Unprotected Transport of Credentials dsfsdf

<9.0.70-2
  • H
Allocation of Resources Without Limits or Throttling dsfsdf

<9.0.70-2
  • H
Improper Encoding or Escaping of Output dsfsdf

<9.0.70-1
  • H
HTTP Request Smuggling dsfsdf

<9.0.68-1
  • L
Race Condition dsfsdf

<9.0.62-1
  • L
Cross-site Scripting (XSS) dsfsdf

<9.0.65-1
  • H
Resource Exhaustion dsfsdf

<9.0.63-1
  • H
Improper Resource Shutdown or Release dsfsdf

<9.0.22-1
  • H
Time-of-check Time-of-use (TOCTOU) dsfsdf

<9.0.58-1
  • H
Missing Release of Resource after Effective Lifetime dsfsdf

<9.0.54-1
  • H
Improper Input Validation dsfsdf

<9.0.53-1
  • M
Improper Authentication dsfsdf

<9.0.43-2
  • M
HTTP Request Smuggling dsfsdf

<9.0.43-2
  • H
CVE-2021-25329 dsfsdf

<9.0.43-1
  • H
Information Exposure dsfsdf

<9.0.43-1
  • L
Information Exposure dsfsdf

<9.0.40-1
  • H
Information Exposure dsfsdf

<9.0.40-1
  • M
CVE-2020-13943 dsfsdf

<9.0.38-1
  • H
Out-of-Bounds dsfsdf

<9.0.37-1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop') dsfsdf

<9.0.37-1
  • H
Resource Exhaustion dsfsdf

<9.0.36-1
  • H
Deserialization of Untrusted Data dsfsdf

<9.0.35-1
  • M
HTTP Request Smuggling dsfsdf

<9.0.31-1
  • M
HTTP Request Smuggling dsfsdf

<9.0.31-1
  • C
Improper Input Validation dsfsdf

<9.0.31-1
  • H
Insufficiently Protected Credentials dsfsdf

<9.0.31-1
  • H
Session Fixation dsfsdf

<9.0.31-1
  • H
Improper Locking dsfsdf

<9.0.22-1
  • M
Cross-site Scripting (XSS) dsfsdf

<9.0.16-4
  • H
Resource Exhaustion dsfsdf

<9.0.16-1