tomcat vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the tomcat package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • L
Resource Exhaustion

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • L
Unchecked Error Condition

*
  • H
Resource Exhaustion

<1:9.0.87-1.el9_4.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_4.2
  • H
Resource Exhaustion

*
  • H
Improper Input Validation

<1:9.0.87-1.el9_4.1
  • H
Incomplete Cleanup

<1:9.0.87-1.el9_4.1
  • H
HTTP Request Smuggling

<1:9.0.62-37.el9_3.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_4.2
  • M
Off-by-one Error

<1:9.0.62-37.el9_3
  • M
Information Exposure

<1:9.0.62-37.el9_3
  • M
Allocation of Resources Without Limits or Throttling

<1:9.0.62-37.el9_3
  • H
Resource Exhaustion

<1:9.0.62-11.el9_2.3
  • M
Improper Input Validation

<1:9.0.62-37.el9_3.1
  • M
Incomplete Cleanup

<1:9.0.62-37.el9_3.1
  • M
Incomplete Cleanup

<1:9.0.62-37.el9_3.1
  • M
Open Redirect

<1:9.0.62-37.el9_3.1
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_2.2
  • H
Resource Exhaustion

<1:9.0.87-1.el9_4.2
  • H
Improper Input Validation

<1:9.0.87-1.el9_2.1
  • H
Incomplete Cleanup

<1:9.0.87-1.el9_2.1
  • H
Improper Input Validation

<1:9.0.87-1.el9_2.1
  • H
Incomplete Cleanup

<1:9.0.87-1.el9_2.1
  • H
Improper Input Validation

<1:9.0.87-1.el9_2.1
  • H
Incomplete Cleanup

<1:9.0.87-1.el9_2.1
  • H
Incomplete Cleanup

<1:9.0.87-1.el9_4.1
  • H
Improper Input Validation

<1:9.0.87-1.el9_4.1
  • H
HTTP Request Smuggling

<1:9.0.62-11.el9_2.4
  • H
HTTP Request Smuggling

<1:9.0.62-11.el9_2.4
  • H
HTTP Request Smuggling

<1:9.0.62-11.el9_2.4
  • H
HTTP Request Smuggling

<1:9.0.62-37.el9_3.2
  • M
Incomplete Cleanup

<1:9.0.62-37.el9_3.1
  • M
Incomplete Cleanup

<1:9.0.62-37.el9_3.1
  • M
Improper Input Validation

<1:9.0.62-37.el9_3.1
  • H
Resource Exhaustion

<1:9.0.62-11.el9_2.3
  • H
Resource Exhaustion

<1:9.0.62-11.el9_2.3
  • H
Resource Exhaustion

<1:9.0.62-11.el9_2.3
  • H
Resource Exhaustion

<1:9.0.62-11.el9_2.3
  • M
Open Redirect

*
  • M
Open Redirect

<1:9.0.62-37.el9_3.1
  • M
Off-by-one Error

<1:9.0.62-37.el9_3
  • M
Information Exposure

<1:9.0.62-37.el9_3
  • M
Allocation of Resources Without Limits or Throttling

<1:9.0.62-37.el9_3
  • L
Arbitrary Code Injection

*