{"api_version":"v1","generated_at":"2026-10-05T22:40:00+00:00","product":{"cve_count":126,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-tomcat-9e5ddcae194b","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Tomcat","next_cursor":"djE6NTA","observations":[{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M1 \u2264 9.0.121, 8.5.0 \u2264 8.5.100, 7.0.56 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-87022","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-87022","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-09-23T18:10:52.633Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-87022","primary_source":"","published":"2026-09-23T11:32:55.485Z"},{"affected":"Apache Tomcat: 11.0.22 \u2264 11.0.25, 10.1.55 \u2264 10.1.59, 9.0.118 \u2264 9.0.121","affected_versions_present":true,"cve_id":"CVE-2026-86350","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-86350","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-09-23T16:17:11.408Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-86350","primary_source":"","published":"2026-09-23T11:31:36.328Z"},{"affected":"Apache Tomcat: 11.0.0-M14 \u2264 11.0.25, 10.1.22 \u2264 10.1.59, 9.0.92 \u2264 9.0.121","affected_versions_present":true,"cve_id":"CVE-2026-86248","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-86248","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-09-23T16:14:59.897Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-86248","primary_source":"","published":"2026-09-23T11:29:35.479Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M1 \u2264 9.0.121, 8.5.0 \u2264 8.5.100, 7.0.43 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-79677","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-79677","fixed":"Apache Tomcat: < 7.0.43","last_modified":"2026-09-23T18:10:47.712Z","patch_url":"https://lists.apache.org/thread/bzwps6ck4szf2hmksbbon3syyl9qnkv8","primary_source":"","published":"2026-09-23T11:28:03.338Z"},{"affected":"Apache Tomcat: 11.0.19 \u2264 11.0.25, 10.1.53 \u2264 10.1.59, 9.0.116 \u2264 9.0.121","affected_versions_present":true,"cve_id":"CVE-2026-78437","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-78437","fixed":"Apache Tomcat: \u2264 8.5.100","last_modified":"2026-09-23T18:10:46.744Z","patch_url":"https://lists.apache.org/thread/qkmsos3s8chn5053qr466rzwv6sk5gjg","primary_source":"","published":"2026-09-23T11:26:29.362Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M1 \u2264 9.0.121, 8.5.0 \u2264 8.5.100, 7.0.0 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-78383","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-78383","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-09-23T18:10:45.708Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-78383","primary_source":"","published":"2026-09-23T11:23:15.477Z"},{"affected":"Apache Tomcat: 11.0.0-M5 \u2264 11.0.25, 10.1.8 \u2264 10.1.59, 9.0.74 \u2264 9.0.121, 8.5.88 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-77791","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-77791","fixed":"Apache Tomcat: \u2264 7.0.109","last_modified":"2026-09-23T18:10:44.739Z","patch_url":"https://lists.apache.org/thread/mb1pjjooqytrl6hbvbt3rw1lqwlon4cz","primary_source":"","published":"2026-09-23T11:20:50.457Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.39 \u2264 9.0.121, 8.5.59 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-77762","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-77762","fixed":"Apache Tomcat: \u2264 7.0.109","last_modified":"2026-09-30T14:50:02.042Z","patch_url":"https://lists.apache.org/thread/y5r9fvjo7ol24mkoyoc0st8bqrfyqcyn","primary_source":"","published":"2026-09-23T11:19:28.370Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.47 \u2264 9.0.121, 8.5.67 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-77756","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-77756","fixed":"Apache Tomcat: \u2264 7.0.109","last_modified":"2026-09-23T18:10:42.842Z","patch_url":"https://lists.apache.org/thread/bl5b6rxqh3vb2k9bj2794vhor7o6xl3z","primary_source":"","published":"2026-09-23T11:18:02.672Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M1 \u2264 9.0.121, 8.5.0 \u2264 8.5.100, 7.0.43 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-76183","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-76183","fixed":"Apache Tomcat: < 7.0.43","last_modified":"2026-09-30T14:54:21.515Z","patch_url":"https://lists.apache.org/thread/45mxk8nj2q8pkhct6lfxkvtm2jpywrsp","primary_source":"","published":"2026-09-23T11:16:09.907Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M4 \u2264 9.0.121, 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-75973","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-75973","fixed":"Apache Tomcat: \u2264 7.0.109","last_modified":"2026-09-23T18:10:40.767Z","patch_url":"https://lists.apache.org/thread/njjcdkkzqyzx4n3ffc4ffjmyh5mpl1gr","primary_source":"","published":"2026-09-23T11:14:07.995Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.25, 10.1.0-M1 \u2264 10.1.59, 9.0.0.M1 \u2264 9.0.121, 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-73581","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73581","fixed":"Apache Tomcat: < 8.5.0","last_modified":"2026-09-30T14:53:50.292Z","patch_url":"https://lists.apache.org/thread/r0dj3h1pbn4wv96fhsfrnz3t6874t6do","primary_source":"","published":"2026-09-23T11:08:53.212Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.0.M1 \u2264 9.0.120; 8.5.0 \u2264 8.5.100; 7.0.43 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-73180","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73180","fixed":"< 7.0.43","last_modified":"2026-08-26T18:35:13.414Z","patch_url":"https://lists.apache.org/thread/3j15vztszpyqss253mjq5v1kp7s6hooq","primary_source":"","published":"2026-08-25T22:01:58.000Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.39 \u2264 9.0.120; 8.5.59 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-68763","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-68763","fixed":"\u2264 7.0.109","last_modified":"2026-08-26T18:36:43.341Z","patch_url":"https://lists.apache.org/thread/tv51ty39ppv41v04hdtkp9dp7tg02nzl","primary_source":"","published":"2026-08-25T22:00:37.047Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.24, 10.1.0-M1 \u2264 10.1.57, 9.0.0.M1 \u2264 9.0.120, 8.5.0 \u2264 8.5.100, 7.0.0 \u2264 7.0.109, < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-68569","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-68569","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-09-21T11:06:13.066Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-68569","primary_source":"","published":"2026-08-25T21:59:17.438Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.0.M1 \u2264 9.0.120; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-68525","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-68525","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-26T18:40:55.312Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-68525","primary_source":"","published":"2026-08-25T21:57:18.557Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.25 \u2264 9.0.120; 8.5.46 \u2264 8.5.100; 7.0.97 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-66422","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-66422","fixed":"< 7.0.97","last_modified":"2026-08-26T18:52:26.487Z","patch_url":"https://lists.apache.org/thread/j5plylz1b2vhqvbkqn7k58nygxhcpk73","primary_source":"","published":"2026-08-25T21:55:16.928Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.0.M1 \u2264 9.0.120; 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-65927","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-65927","fixed":"7.0.0 \u2264 7.0.109; < 7.0.0","last_modified":"2026-08-26T15:22:01.843Z","patch_url":"https://lists.apache.org/thread/st1dx1zyn5y7ny2s0sscmh6lrv3worr4","primary_source":"","published":"2026-08-25T21:53:05.852Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.0.M1 \u2264 9.0.120; 8.5.0 \u2264 8.5.100; 7.0.30 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-65905","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-65905","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-26T15:21:11.604Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-65905","primary_source":"","published":"2026-08-25T21:51:33.307Z"},{"affected":"11.0.20 \u2264 11.0.24; 10.1.53 \u2264 10.1.57; 9.0.115 \u2264 9.0.120","affected_versions_present":true,"cve_id":"CVE-2026-65637","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-65637","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-08-26T15:20:30.366Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-65637","primary_source":"","published":"2026-08-25T21:49:13.127Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.42 \u2264 9.0.120","affected_versions_present":true,"cve_id":"CVE-2026-65183","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-65183","fixed":"8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109","last_modified":"2026-08-26T15:19:19.234Z","patch_url":"https://lists.apache.org/thread/748o4st6d5dk6n3l7tgzo5yl68gg05c0","primary_source":"","published":"2026-08-25T21:44:49.363Z"},{"affected":"11.0.0-M1 \u2264 11.0.24; 10.1.0-M1 \u2264 10.1.57; 9.0.0.M1 \u2264 9.0.120; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-65182","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-65182","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-26T15:18:16.813Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-65182","primary_source":"","published":"2026-08-25T21:43:37.040Z"},{"affected":"11.0.0-M20 \u2264 11.0.24; 10.1.24 \u2264 10.1.57; 9.0.89 \u2264 9.0.120","affected_versions_present":true,"cve_id":"CVE-2026-66299","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-66299","fixed":"\u2264 8.5.100","last_modified":"2026-07-28T17:40:03.853Z","patch_url":"https://lists.apache.org/thread/8owczcc1o8qw1rxmg9gvfk4w2jnh4l5k","primary_source":"","published":"2026-07-28T14:29:05.810Z"},{"affected":"11.0.0-M1 \u2264 11.0.23; 10.1.0-M1 \u2264 10.1.56; 9.0.13 \u2264 9.0.119; 8.5.38 \u2264 8.5.100; 7.0.100 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-59084","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59084","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-07-14T13:51:52.489Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-59084","primary_source":"","published":"2026-07-14T08:24:21.531Z"},{"affected":"11.0.0-M1 \u2264 11.0.23; 10.1.0-M1 \u2264 10.1.56; 9.0.0.M1 \u2264 9.0.119; 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-59083","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59083","fixed":"< 8.0.0","last_modified":"2026-07-14T12:19:54.438Z","patch_url":"https://lists.apache.org/thread/3g63zos2gkjo5vgnrk8kxmosv47w6wbq","primary_source":"","published":"2026-07-14T08:13:04.861Z"},{"affected":"11.0.0-M1 \u2264 11.0.4; 10.1.0-M1 \u2264 10.1.36; 9.0.0.M1 \u2264 9.0.100; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-55957","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55957","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-06-30T13:27:37.064Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-55957","primary_source":"","published":"2026-06-29T20:47:12.661Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M1 \u2264 10.1.55; 9.0.0.M1 \u2264 9.0.118; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-55956","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55956","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-06-30T13:25:31.049Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-55956","primary_source":"","published":"2026-06-29T20:46:02.927Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M1 \u2264 10.1.55; 9.0.13 \u2264 9.0.118; 8.5.38 \u2264 8.5.100; 7.0.100 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-55955","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55955","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-06-30T13:22:14.917Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-55955","primary_source":"","published":"2026-06-29T20:44:39.779Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M1 \u2264 10.1.55; 9.0.0.M1 \u2264 9.0.118; 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-55276","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55276","fixed":"< 8.0.0","last_modified":"2026-06-30T13:59:37.872Z","patch_url":"https://lists.apache.org/thread/jy09xjlzn6r2qwvqoph8vcmf959yq68v","primary_source":"","published":"2026-06-29T20:42:23.257Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M7 \u2264 10.1.55; 9.0.83 \u2264 9.0.118","affected_versions_present":true,"cve_id":"CVE-2026-53434","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53434","fixed":"\u2264 9.0.82","last_modified":"2026-06-30T12:28:36.391Z","patch_url":"https://lists.apache.org/thread/x510lbq0sfrd1qyo7q3r1mpllgpdcosk","primary_source":"","published":"2026-06-29T20:41:06.948Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M1 \u2264 10.1.55; 9.0.0.M1 \u2264 9.0.118; 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-53404","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53404","fixed":"< 8.0.0","last_modified":"2026-06-30T12:34:20.821Z","patch_url":"https://lists.apache.org/thread/rdhpghgfskrdmw9hqzjgjrtw538smpmz","primary_source":"","published":"2026-06-29T20:39:45.317Z"},{"affected":"11.0.0-M1 \u2264 11.0.22; 10.1.0-M1 \u2264 10.1.55; 9.0.0.M1 \u2264 9.0.118; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-50229","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-50229","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-06-30T12:50:01.539Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-50229","primary_source":"","published":"2026-06-29T20:36:24.683Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.0.M1 \u2264 9.0.117; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-43515","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-43515","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-06-04T09:57:54.826Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-43515","primary_source":"","published":"2026-05-12T15:33:23.311Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.0.M1 \u2264 9.0.117; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.00","affected_versions_present":true,"cve_id":"CVE-2026-43514","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-43514","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-13T17:22:42.246Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-43514","primary_source":"","published":"2026-05-12T15:32:09.858Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.0.M1 \u2264 9.0.117; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.00","affected_versions_present":true,"cve_id":"CVE-2026-43513","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-43513","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-14T19:53:30.781Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-43513","primary_source":"","published":"2026-05-12T15:26:25.599Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.0.M1 \u2264 9.0.117; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0","affected_versions_present":true,"cve_id":"CVE-2026-43512","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-43512","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-14T19:53:34.555Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-43512","primary_source":"","published":"2026-05-12T15:24:02.424Z"},{"affected":"Apache Tomcat: 11.0.0-M1 \u2264 11.0.21, 10.1.0-M1 \u2264 10.1.54, 9.0.0.M1 \u2264 9.0.117, 10.0.0-M1 \u2264 10.0.27, 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-41293","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41293","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-09-17T18:37:24.561Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-41293","primary_source":"","published":"2026-05-12T15:19:35.179Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.2 \u2264 9.0.117; 8.5.24 \u2264 8.5.100; 7.0.83 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-42498","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42498","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-13T15:59:04.361Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-42498","primary_source":"","published":"2026-05-12T15:17:56.531Z"},{"affected":"11.0.0-M1 \u2264 11.0.21; 10.1.0-M1 \u2264 10.1.54; 9.0.0.M1 \u2264 9.0.117; 10.0.0-M1 \u2264 10.0.27; 8.5.0 \u2264 8.5.100; 4.0 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-41284","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41284","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-13T15:57:45.607Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-41284","primary_source":"","published":"2026-05-12T15:14:45.278Z"},{"affected":"11.0.0-M14 \u2264 11.0.20; 10.1.22 \u2264 10.1.53; 9.0.92 \u2264 9.0.116","affected_versions_present":true,"cve_id":"CVE-2026-34500","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-34500","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-10T14:22:31.310Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-34500","primary_source":"","published":"2026-04-09T19:36:52.857Z"},{"affected":"11.0.0-M1 \u2264 11.0.20; 10.1.0-M1 \u2264 10.1.53; 9.0.13 \u2264 9.0.116","affected_versions_present":true,"cve_id":"CVE-2026-34487","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-34487","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-10T17:49:44.314Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-34487","primary_source":"","published":"2026-04-09T19:36:12.048Z"},{"affected":"11.0.0-M1 \u2264 11.0.20; 10.1.0-M1 \u2264 10.1.53; 9.0.40 \u2264 9.0.116; 8.5.84 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-34483","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-34483","fixed":"\u2264 8.5.83","last_modified":"2026-04-10T20:17:38.858Z","patch_url":"https://lists.apache.org/thread/j1w7304yonlr8vo1tkb5nfs7od1y228b","primary_source":"","published":"2026-04-09T19:30:28.874Z"},{"affected":"11.0.15 \u2264 11.0.19; 10.1.50 \u2264 10.1.52; 9.0.113 \u2264 9.0.115","affected_versions_present":true,"cve_id":"CVE-2026-32990","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32990","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-10T18:39:25.498Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-32990","primary_source":"","published":"2026-04-09T19:23:49.618Z"},{"affected":"11.0.0-M1 \u2264 11.0.18; 10.0.0-M1 \u2264 10.1.52; 9.0.13 \u2264 9.0.115; 8.5.38 \u2264 8.5.100; 7.0.100 \u2264 7.0.109","affected_versions_present":true,"cve_id":"CVE-2026-29146","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29146","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-17T12:05:18.740Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-29146","primary_source":"","published":"2026-04-09T19:21:57.289Z"},{"affected":"11.0.0-M1 \u2264 11.0.18; 10.1.0-M7 \u2264 10.1.52; 9.0.83 \u2264 9.0.115; 1.1.23 \u2264 1.1.34; 1.2.0 \u2264 1.2.39; 1.3.0 \u2264 1.3.6; 2.0.0 \u2264 2.0.13","affected_versions_present":true,"cve_id":"CVE-2026-29145","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29145","fixed":"\u2264 8.5.100","last_modified":"2026-04-10T18:11:31.014Z","patch_url":"https://lists.apache.org/thread/yz5fxmhd2j43wgqykssdo7kltws57jfz","primary_source":"","published":"2026-04-09T19:20:24.601Z"},{"affected":"11.0.16 \u2264 11.0.18; 10.1.51 \u2264 10.1.52; 9.0.114 \u2264 9.0.115","affected_versions_present":true,"cve_id":"CVE-2026-29129","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29129","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-10T18:06:45.771Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-29129","primary_source":"","published":"2026-04-09T19:19:40.645Z"},{"affected":"11.0.0-M1 \u2264 11.0.18; 10.1.0-M1 \u2264 10.1.52; 9.0.0.M23 \u2264 9.0.115; 8.5.30 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-25854","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25854","fixed":"\u2264 7.0.109","last_modified":"2026-04-10T18:22:34.359Z","patch_url":"https://lists.apache.org/thread/ghct3b6o74bp2vm7q875s1zh0dqrz3h0","primary_source":"","published":"2026-04-09T19:13:13.529Z"},{"affected":"11.0.0-M1 \u2264 11.0.18; 10.1.0-M1 \u2264 10.1.52; 9.0.0.M1 \u2264 9.0.115; 8.5.0 \u2264 8.5.100; 7.0.0 \u2264 7.0.109; < 7.0.0; 8.0.0-RC1 \u2264 8.0.53","affected_versions_present":true,"cve_id":"CVE-2026-24880","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-24880","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-10T18:33:49.308Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-24880","primary_source":"","published":"2026-04-09T19:12:10.730Z"},{"affected":"11.0.0-M1 \u2264 11.0.14; 10.1.0-M1 \u2264 10.1.49; 9.0.0.M1 \u2264 9.0.112; \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2026-24733","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-24733","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-03-11T15:19:30.867Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-24733","primary_source":"","published":"2026-02-17T18:50:43.871Z"},{"affected":"11.0.0-M1 \u2264 11.0.14; 10.1.0-M1 \u2264 10.1.49; 9.0.0-M1 \u2264 9.0.112; 8.5.0 \u2264 8.5.100","affected_versions_present":true,"cve_id":"CVE-2025-66614","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-66614","fixed":"< 8.5.0","last_modified":"2026-03-24T09:46:33.159Z","patch_url":"https://lists.apache.org/thread/vw6lxtlh2qbqwpb61wd3sv1flm2nttw7","primary_source":"","published":"2026-02-17T18:48:30.577Z"}],"source_generated_at":"2026-10-05T06:20:29.126Z","vendor":"Apache Software Foundation"}}
