Apache releases security advisory for Tomcat
The Apache Software Foundation has released a security advisory to address the vulnerabilities (CVE-2024-56337, CVE-2024-54677, CVE-2024-50379) in multiple versions of Tomcat. A remote attacker could exploit these vulnerabilities to trigger remote code execution and denial of service condition on the targeted system. Apache fixed vulnerabilities in Apache Tomcat versions 11.0.2, 10.1.34, 9.0.98.
Detailed information on vulnerability and updates can be found in Apache’s security advisories – apache.org.
24 December 2024