Apache Tomcat Vulnerabilities Let Attackers Bypass Security Controls and Crash Servers

The Apache Software Foundation has patched a dozen security vulnerabilities in Apache Tomcat, the widely deployed open-source Java servlet container, with fixes rolled into version 11.0.25. The flaws, disclosed on August 25, 2026, range from low-severity authentication quirks to important-rated bugs that could let attackers sidestep access controls or knock production servers offline through denial-of-service […]

This article has been indexed from Cyber Security News

Read the original article: