tomcat10-jsp-3_1-api

Direct Vulnerabilities

Known vulnerabilities in the tomcat10-jsp-3_1-api package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2026-34500

<10.1.54-150200.5.64.1
  • M
Improper Encoding or Escaping of Output

<10.1.54-150200.5.64.1
  • H
Missing Encryption of Sensitive Data

<10.1.54-150200.5.64.1
  • M
Information Exposure Through Log Files

<10.1.54-150200.5.64.1
  • M
CVE-2026-29145

<10.1.54-150200.5.64.1
  • H
Improper Input Validation

<10.1.54-150200.5.64.1
  • H
CVE-2026-29146

<10.1.54-150200.5.64.1
  • M
Open Redirect

<10.1.54-150200.5.64.1
  • M
HTTP Request Smuggling

<10.1.54-150200.5.64.1
  • H
Improper Certificate Validation

<10.1.54-150200.5.64.1
  • M
CVE-2026-29129

<10.1.54-150200.5.64.1
  • M
CVE-2026-24734

<10.1.52-150200.5.61.1
  • M
CVE-2026-24733

<10.1.52-150200.5.61.1
  • H
Improper Certificate Validation

<10.1.52-150200.5.61.1
  • M
Improper Resource Shutdown or Release

<10.1.48-150200.5.54.1
  • H
Directory Traversal

<10.1.48-150200.5.54.1
  • M
Improper Neutralization

<10.1.48-150200.5.54.1
  • H
Improper Resource Shutdown or Release

<10.1.44-150200.5.51.1
  • M
Resource Exhaustion

<10.1.43-150200.5.48.1
  • M
Integer Overflow or Wraparound

<10.1.43-150200.5.48.1
  • H
Authentication Bypass

<10.1.43-150200.5.48.1
  • H
Authentication Bypass

<10.1.42-150200.5.45.1
  • H
Allocation of Resources Without Limits or Throttling

<10.1.42-150200.5.45.1
  • M
Improper Handling of Case Sensitivity

<10.1.42-150200.5.45.1
  • H
Improper Encoding or Escaping of Output

<10.1.40-150200.5.40.1
  • H
Incomplete Cleanup

<10.1.40-150200.5.40.1