Multiples vulnérabilités dans Apache Tomcat (26 août 2026)
Multiple vulnerabilities have been discovered in Apache Tomcat, allowing attackers to cause a denial of service and bypass security policies. These vulnerabilities affect versions 10.1.x prior to 10.1.59. Users are advised to consult the vendor's security bulletin for available patches.
Multiple vulnerabilities exist within Apache Tomcat, posing a significant risk to systems utilizing this web server. These flaws enable attackers to trigger a denial of service and potentially circumvent existing security policies. The affected versions are Tomcat 10.1.x, specifically prior to version 10.1.59.
Several CVEs have been assigned to these vulnerabilities, including CVE-2026-32990, CVE-2026-65182, CVE-2026-65183, CVE-2026-65637, CVE-2026-65905, CVE-2026-65927, CVE-2026-66299, CVE-2026-66422, CVE-2026-68525, and CVE-2026-68569. The vendor’s security bulletin provides detailed information and instructions for applying the necessary patches.