Related Threat Clusters
-
SUSE Releases Critical Security Patch for Tomcat 11 Addressing Multiple Vulnerabilities
On March 12, 2026, SUSE issued a critical security update for Tomcat 11.0.18 to address several vulnerabilities, including CVE-2025-66614, CVE-2026-24733, and CVE-2026-24734. The vulnerabilities include a client…
7 articles · Updated March 12, 2026 -
Oracle Tomcat Security Fixes Address Critical Vulnerabilities
On July 28, 2026, Oracle released important security fixes for Tomcat versions 9 and 10, addressing multiple vulnerabilities. Key issues include CVE-2026-24734, a certificate revocation bypass, and CVE-2026-29146, which…
10 articles · Updated July 28, 2026 -
Multiple Vulnerabilities in Apache Tomcat Exposed
Apache Tomcat has reported multiple vulnerabilities affecting versions 9.x, 10.x, and 11.x, including CVE-2026-55956, CVE-2026-55955, CVE-2026-55276, and CVE-2026-53434. These vulnerabilities could allow remote…
4 articles · Updated July 2, 2026 -
Apache Tomcat Vulnerability Allows Bypass of Access Controls
Apache disclosed a vulnerability in Tomcat (CVE-2026-24733) that allows attackers to bypass access controls through legacy HTTP/0.9 requests under specific configurations. This low-severity issue was identified by the…
2 articles · Updated February 21, 2026
Recent Intelligence Reports
- Security 9 — tomcat.apache.org · August 8, 2026
- Security 10 — tomcat.apache.org · August 8, 2026
- Security 11 — tomcat.apache.org · August 8, 2026
- Fedora 35 tomcat14 Major Security Patch SUSE-SU-2026-0891 — Linuxsecurity · March 12, 2026
- SUSE tomcat11 Important Update CVE-2026-0877 — Linuxsecurity · March 12, 2026
- Apache Tomcat Vulnerability Circumvents Access Rules — Esecurityplanet · February 21, 2026
- Apache Tomcat Vulnerabilities Let Attackers Bypass Security Constraints via HTTP/0.9 Requests — Cybersecuritynews · February 20, 2026