GHSA-f525-44xv-f2qjCriticalCVSS 9.8

Improper Input Validation vulnerability in Apache Tomcat due to incomplete fix for CVE-2026-32990...

Published
August 26, 2026
Last Modified
August 26, 2026

🔗 CVE IDs covered (1)

📋 Description

Improper Input Validation vulnerability in Apache Tomcat due to incomplete fix for CVE-2026-32990.

This issue affects Apache Tomcat: from 11.0.20 through 11.0.24, from 10.1.53 through 10.1.57, from 9.0.115 through 9.0.120.

Users are recommended to upgrade to version 11.0.25, 10.1.58 or 9.0.121, which fix the issue.

🔗 References (3)