Known vulnerabilities in jws5-tomcat (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:jws5-tomcat_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 27
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting jws5-tomcat (Red Hat package) jws5-tomcat (Red Hat package) is affected by 27 known vulnerabilities: 1 critical, 3 high, 19 medium, 4 low Critical High Medium Low

Vulnerabilities (27)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76417 - Allocation of Resources Without Limits or Throttling
CVE-2023-28709
CWE-770 Medium
No
No
9.0.62-15.redhat_00013.1.el7jws, 9.0.62-15.redhat_00013.1.el8jws, 9.0.62-15.redhat_00013.1.el9jws 22.05.2023 SB2023052235
SB2023053003
SB2023053052
and 35 more
#VU73957 - Sensitive Cookie in HTTPS Session Without 'Secure' Attribute
CVE-2023-28708
CWE-614 Low
No
No
9.0.62-15.redhat_00013.1.el7jws, 9.0.62-15.redhat_00013.1.el8jws, 9.0.62-15.redhat_00013.1.el9jws 22.03.2023 SB2023032237
SB2023032939
SB2023032945
and 53 more
#VU72427 - Allocation of Resources Without Limits or Throttling
CVE-2023-24998
CWE-770 Medium
Available
No
9.0.62-15.redhat_00013.1.el7jws, 9.0.62-15.redhat_00013.1.el8jws, 9.0.62-15.redhat_00013.1.el9jws 20.02.2023 SB2023022046
SB2023022047
SB2023030917
and 203 more
#VU71752 - Integer overflow
CVE-2022-24963
CWE-190 High
No
No
9.0.62-15.redhat_00013.1.el7jws, 9.0.62-15.redhat_00013.1.el8jws, 9.0.62-15.redhat_00013.1.el9jws 02.02.2023 SB2023020209
SB2023020211
SB2023022704
and 19 more
#VU70666 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-45143
CWE-94 Medium
No
No
9.0.62-13.redhat_00011.1.el7jws, 9.0.62-13.redhat_00011.1.el8jws, 9.0.62-13.redhat_00011.1.el9jws 03.01.2023 SB2023010329
SB2023012516
SB2023012606
and 34 more
#VU68859 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-42252
CWE-444 Medium
No
No
9.0.62-13.redhat_00011.1.el7jws, 9.0.62-13.redhat_00011.1.el8jws, 9.0.62-13.redhat_00011.1.el9jws 31.10.2022 SB2022103146
SB2022112324
SB2022112533
and 43 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
9.0.50-5.redhat_00007.1.el7jws, 9.0.50-5.redhat_00007.1.el8jws 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more


Showing elements 21 - 40 out of 27