Apache Tomcat Vulnerabilities CVE-2025-55752 and CVE-2025-55754 Disclosed

Apache Tomcat Vulnerabilities CVE-2025-55752 and CVE-2025-55754 Disclosed

First seen 2 Dec 2025, 18:33 UTC ThecyberexpressSecurityboulevard 47.2

Article Content

Browse articles
ThreatCluster

The Apache Software Foundation has disclosed two vulnerabilities affecting Apache Tomcat versions 9, 10, and 11. The more critical vulnerability, CVE-2025-55752, involves a directory traversal flaw that could lead to remote code execution. System administrators are advised to take immediate action to mitigate these risks.