[WID-SEC-2026-2123] Apache Tomcat: Mehrere Schwachstellen CVSS Base Score 7.3 (hoch) CVSS Temporal Score 6.4 (mittel) Remoteangriff ja Datum 29.06.2026 Stand 30.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung Apache Tomcat ist ein Web-Applikationsserver für verschiedene Plattformen. Produkte 29.06.2026 Apache Tomcat <11.0.23 Apache Tomcat <10.1.56 Apache Tomcat <9.0.119 Apache Tomcat <11.0.5 Apache Tomcat <10.1.37 Apache Tomcat <9.0.101 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in Apache Tomcat ausnutzen, um Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, Cross-Site-Scripting-Angriffe durchzuführen oder andere, nicht näher spezifizierte Auswirkungen auszulösen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in Apache Tomcat allow a remote attacker to bypass security controls, cause denial-of-service, conduct cross-site scripting, or trigger other unspecified impacts. The CVSS Base Score for these issues is 7.3 (High). Affected versions are Apache Tomcat 11.x prior to 11.0.23, 10.1.x prior to 10.1.56, and 9.0.x prior to 9.0.119; a mitigation is available.