Monitor vulnerabilities that affect your stack.
Sign up free to get alerts when software you use is affected.
CVE Vulnerabilities - 17 April 2026
RSS417 vulnerabilities published on 17 April 2026
Severity:
Apache Tomcat Server Allows Unauthorized Access on Linux Systems
ROOT-APP-MAVEN-CVE-2025-55752
A security patch has been released for a vulnerability in the Apache Tomcat server that could allow an attacker to gain unauthorized access on Linux systems. This issue affects systems running the aff...
Apache Tomcat: Unauthorized Access to Files
ROOT-APP-MAVEN-CVE-2025-31650
A vulnerability in Apache Tomcat allows attackers to access sensitive files on the server. This can happen if you're using an outdated version of Apache Tomcat. Update to a fixed version to protect yo...
Apache Tomcat: Unauthorized Access to Sensitive Data
ROOT-APP-MAVEN-CVE-2025-31651
A vulnerability in the Apache Tomcat web server allows an attacker to access sensitive data without permission. This affects users who run Apache Tomcat, and it's essential to update the software to a...
Apache Tomcat: Unauthenticated Access to Sensitive Data Possible
ROOT-APP-MAVEN-CVE-2025-66614
A security patch has been released for Apache Tomcat's Catalina component. This patch fixes a vulnerability that could allow unauthorized access to sensitive information. If you use Apache Tomcat, you...
Apache Tomcat Coyote HTTP Server May Allow Remote Code Execution
ROOT-APP-MAVEN-CVE-2025-48989
A security patch has been released for the Apache Tomcat Coyote HTTP server. This patch fixes a vulnerability that could allow an attacker to execute malicious code on your server. If you use this ser...
Apache Tomcat: Unauthenticated Remote Code Execution
ROOT-APP-MAVEN-CVE-2026-34500
Apache Tomcat's embedded core library has a security issue that allows unauthorized access to your system. This could potentially allow attackers to execute malicious code on your server without needi...
Apache Tomcat Core Has a Password Exposure Risk
ROOT-APP-MAVEN-CVE-2026-34487
Apache Tomcat is a widely used server software. A recent update fixed a critical issue where passwords might be exposed to unauthorized access. Update to the latest version to protect sensitive inform...
Apache Tomcat Embedded Core Software Can Be Hijacked by Attackers
ROOT-APP-MAVEN-CVE-2026-24734
Apache Tomcat Embedded Core software has a security weakness that could allow hackers to take control of a server. This affects systems using certain versions of the software. Update to a patched vers...
Apache Tomcat: Unauthorized Access to Internal Server Configuration
ROOT-APP-MAVEN-CVE-2026-34483
A security update has been released for Apache Tomcat, which could allow an attacker to access sensitive server configuration. This affects users who have not updated their Tomcat software. To fix the...
Apache Tomcat: Unpatched Servers May Be Hacked
ROOT-APP-MAVEN-CVE-2025-61795
Apache Tomcat servers may be vulnerable to a security weakness that allows hackers to break in. This issue affects servers using a specific version of Apache Tomcat, and it's recommended to update to ...
Apache Tomcat: Unauthenticated Access to Sensitive Data
ROOT-APP-MAVEN-CVE-2026-29145
Apache Tomcat contains a security patch that fixes a vulnerability that allows an attacker to access sensitive data without needing a password. This affects users of Apache Tomcat who have not updated...
Apache Tomcat: Unauthorized Access to Server
ROOT-APP-MAVEN-CVE-2025-49124
A security update has been released for Apache Tomcat that fixes a vulnerability that could allow an attacker to access your server without a password. This affects systems using Apache Tomcat, and it...
Apache Tomcat: Unauthenticated Code Execution via Malicious HTTP Request
ROOT-APP-MAVEN-CVE-2026-24880
Apache Tomcat users should update to a patched version to prevent an attacker from executing arbitrary code with elevated privileges via a specially crafted HTTP request. This vulnerability can lead t...
Apache Tomcat: Unauthenticated Data Exposure Through Unvalidated Input
ROOT-APP-MAVEN-CVE-2025-48988
Apache Tomcat's catalina package has a security issue that could allow an attacker to access sensitive data without being authenticated. This could lead to unauthorized access to your website or appli...
Apache Tomcat Core Update Needed to Prevent Data Exposure
ROOT-APP-MAVEN-CVE-2026-25854
A security patch has been released for Apache Tomcat, a popular web server software. This patch fixes a vulnerability that could allow unauthorized access to sensitive data. Update to the latest versi...
CGA-665p-g3m9-mmwv
CGA-665p-g3m9-mmwv
CGA-665p-g3m9-mmwv
CGA-5jjf-gqr2-hqj6
CGA-5jjf-gqr2-hqj6
CGA-qq7f-cmwq-26wf
CGA-qq7f-cmwq-26wf
CGA-qq7f-cmwq-26wf
CGA-r6xq-884f-3mgw
CGA-r6xq-884f-3mgw
CGA-r6xq-884f-3mgw
Bouncy Castle Java PGP Module Can Cause Server Overload
DEBIAN-CVE-2026-3505
A security issue in the Bouncy Castle Java PGP module can cause a server to run out of resources if it processes a large number of PGP encrypted messages. This affects Bouncy Castle Java versions befo...
Rootio-Imagemagick: Remote Code Execution via Malicious Image Files
ROOT-OS-DEBIAN-12-CVE-2026-33908
An attacker can upload a malicious image file to your website or server, which could allow them to execute unauthorized code on your system. This issue affects the Rootio-Imagemagick package on certai...
Rootio Imagemagick: Unauthenticated Code Execution via Malicious Images
ROOT-OS-DEBIAN-12-CVE-2026-33899
Rootio Imagemagick, a package used to process images, has a security issue that could allow an attacker to execute malicious code without needing a password. This issue affects users who install and r...