Known vulnerabilities in tomcat-lib - page 4
Vendor:
SUSE
Software:
tomcat-lib
Software CPE:
cpe:2.3:o:suse:tomcat-lib:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
69
Public exploits:
13
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
9.0.120-3.174.1
9.0.120-150200.114.1
9.0.119-3.169.1
9.0.119-150200.111.1
9.0.118-150200.108.1
9.0.118-3.166.1
9.0.117-150200.105.1
9.0.117-3.163.2
9.0.115-3.160.1
9.0.115-150200.102.1
9.0.36-3.156.1
9.0.111-150200.99.1
9.0.36-3.153.2
9.0.111-150200.96.1
9.0.108-150200.91.1
9.0.36-3.148.1
9.0.36-3.142.1
9.0.104-150200.81.1
9.0.102-150200.78.1
9.0.36-3.139.1
9.0.36-3.136.1
9.0.98-150200.74.1
9.0.97-150200.71.1
9.0.36-3.133.1
9.0.36-3.130.1
9.0.36-3.127.1
9.0.91-150200.68.1
9.0.36-3.124.1
9.0.85-150200.57.1
9.0.36-3.118.1
9.0.36-150100.4.105.1
9.0.36-150100.4.98.1
9.0.36-3.111.1
9.0.82-150200.46.1
9.0.36-3.108.1
9.0.36-150100.4.93.1
9.0.75-150200.41.1
9.0.36-3.105.1
8.0.53-29.66.1
9.0.43-150200.38.1
9.0.43-150200.35.1
9.0.36-3.102.1
9.0.36-150100.4.90.1
9.0.36-150200.22.1
8.0.53-29.54.1
9.0.36-150100.4.76.1
9.0.36-150000.3.96.1
9.0.36-3.87.1
9.0.36-4.70.1
8.0.53-29.46.1
9.0.36-3.79.1
9.0.36-3.64.1
8.0.53-29.63.1
9.0.36-3.99.1
9.0.36-150100.4.87.1
9.0.36-3.93.1
9.0.36-150100.4.81.1
9.0.36-150000.3.101.2
8.0.53-29.57.1
9.0.36-3.90.1
9.0.36-13.1
9.0.36-3.84.1
9.0.36-4.63.1
9.0.36-3.71.1
9.0.36-4.58.1
9.0.36-3.24.1
Vulnerabilities (69)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU67714 - Exposure of sensitive information to an unauthorized actor CVE-2021-43980 |
CWE-200 | Low | 9.0.36-3.90.1, 9.0.36-150000.3.101.2, 9.0.36-150100.4.81.1 | 28.09.2022 |
SB2022092818 SB2022103001 SB2022111642 and 20 more |
||
| #VU60079 - Permissions, Privileges, and Access Controls CVE-2022-23181 |
CWE-264 | Low | 9.0.36-3.90.1, 9.0.36-4.70.1 | 27.01.2022 |
SB2022012708 SB2022030854 SB2022041951 and 25 more |
||
| #VU56634 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2021-41079 |
CWE-835 | Medium | 9.0.36-3.71.1, 9.0.36-3.84.1, 9.0.36-4.63.1, 9.0.36-13.1 | 15.09.2021 |
SB2021091527 SB2021100721 SB2021101512 and 16 more |
||
| #VU55423 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2021-33037 |
CWE-444 | Medium | 9.0.36-3.71.1, 9.0.36-3.84.1, 9.0.36-4.63.1, 9.0.36-13.1 | 29.07.2021 |
SB2021072907 SB2021080807 SB2021080808 and 30 more |
||
| #VU55417 - Improper Authentication CVE-2021-30640 |
CWE-287 | Medium | 9.0.36-3.71.1, 9.0.36-3.84.1, 9.0.36-4.63.1, 9.0.36-13.1 | 29.07.2021 |
SB2021072901 SB2021072902 SB2021081231 and 14 more |
||
| #VU51014 - Resource Management Errors CVE-2021-25122 |
CWE-399 | Medium | 9.0.36-3.24.1, 9.0.36-3.64.1, 9.0.36-3.79.1, 9.0.36-4.58.1 | 01.03.2021 |
SB2021030115 SB2021031619 SB2021032519 and 23 more |
||
| #VU51012 - Deserialization of Untrusted Data CVE-2021-25329 |
CWE-502 | Medium | 8.0.53-29.46.1, 9.0.36-3.24.1, 9.0.36-3.64.1, 9.0.36-3.79.1, 9.0.36-4.58.1 | 01.03.2021 |
SB2021030115 SB2021031620 SB2021040723 and 16 more |
||
| #VU49570 - Exposure of sensitive information to an unauthorized actor CVE-2021-24122 |
CWE-200 | Medium | 9.0.36-3.79.1, 9.0.36-4.58.1 | 14.01.2021 |
SB2021011807 SB2021072821 SB2022012734 and 5 more |
||
| #VU28158 - Deserialization of Untrusted Data CVE-2020-9484 |
CWE-502 | High | 8.0.53-29.46.1, 9.0.36-3.24.1, 9.0.36-3.64.1, 9.0.36-3.79.1, 9.0.36-4.58.1 | 21.05.2020 |
SB2020052124 SB2020052501 SB2020053102 and 47 more |
Showing elements 61 - 80 out of 69