Threats Tagged 'cve-2025-61795'
View all threats tagged with 'cve-2025-61795'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-61795'
Click on any threat for detailed analysis and mitigation recommendations
0 This update includes the following RPMs: tomcat10: * tomcat10-10.1.54-1.hum1 (noarch) * tomcat10-admin-webapps-10.1.54-1.hum1 (noarch) * tomcat10-common-10.1.54-1.hum1 (noarch) * tomcat10-docs-webapp-10.1.54-1.hum1 (noarch) * tomcat10-el-5.0-api-10.1.54-1.hum1 (noarch) * tomcat10-jsp-3.1-api-10.1.54-1.hum1 (noarch) * tomcat10-lib-10.1.54-1.hum1 (noarch) * tomcat10-servlet-6.0-api-10.1.54-1.hum1 (noarch) * tomcat10-user-instance-10.1.54-1.hum1 (noarch) * tomcat10-webapps-10.1.54-1.hum1 (noarch) * tomcat10-10.1.54-1.hum1.src (src) Join the discussion | GCVE Database | 04/15/2026, 17:31:38 UTC Added: 06/10/2026, 11:41:37 UTC |
0 This update includes the following RPMs: tomcat11: * tomcat11-11.0.21-0.1.hum1 (noarch) * tomcat11-admin-webapps-11.0.21-0.1.hum1 (noarch) * tomcat11-docs-webapp-11.0.21-0.1.hum1 (noarch) * tomcat11-el-6.0-api-11.0.21-0.1.hum1 (noarch) * tomcat11-jsp-4.0-api-11.0.21-0.1.hum1 (noarch) * tomcat11-lib-11.0.21-0.1.hum1 (noarch) * tomcat11-servlet-6.1-api-11.0.21-0.1.hum1 (noarch) * tomcat11-webapps-11.0.21-0.1.hum1 (noarch) * tomcat11-11.0.21-0.1.hum1.src (source) Join the discussion | GCVE Database | 04/04/2026, 16:29:57 UTC Added: 06/10/2026, 11:41:37 UTC |
0 Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies. Security Fix(es): * tomcat: Apache Tomcat: Bypass of rules in Rewrite Valve (CVE-2025-31651) * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Denial of service (CVE-2025-61795) * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Directory traversal via rewrite with possible RCE (CVE-2025-55752) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 12/10/2025, 14:45:33 UTC Added: 06/10/2026, 09:09:13 UTC |
0 Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies. Security Fix(es): * tomcat: Apache Tomcat: Bypass of rules in Rewrite Valve (CVE-2025-31651) * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Denial of service (CVE-2025-61795) * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Directory traversal via rewrite with possible RCE (CVE-2025-55752) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 12/10/2025, 14:38:53 UTC Added: 06/10/2026, 09:09:13 UTC |
0 Red Hat JBoss Web Server 6.1.3 includes important security fixes addressing multiple vulnerabilities in Apache Tomcat components. These include a directory traversal vulnerability via rewrite rules that may allow remote code execution, a denial of service issue, and a bypass of rules in the Rewrite Valve. The update replaces version 6.1.2 and is available for Red Hat Enterprise Linux 8, 9, and 10. The advisory rates the security impact as Important. Users are advised to apply this update after ensuring all prior relevant errata are installed. Join the discussion | GCVE Database | 11/06/2025, 16:32:43 UTC Added: 06/10/2026, 09:09:13 UTC |
0 Red Hat JBoss Web Server 6.1.3 includes important security fixes addressing multiple vulnerabilities in Apache Tomcat components. These include a directory traversal vulnerability with potential remote code execution (CVE-2025-55752), a denial of service vulnerability (CVE-2025-61795), and a bypass of rules in the Rewrite Valve (CVE-2025-31651). The update replaces version 6.1.2 and is rated as having an important security impact by Red Hat. Users are advised to back up their installations before applying the update. Join the discussion | GCVE Database | 11/06/2025, 16:24:24 UTC Added: 06/10/2026, 09:09:13 UTC |
0 Apache Tomcat versions from 9.0.0 through 9.0.109, 10.1.0 through 10.1.46, and 11.0.0 through 11.0.11 have a vulnerability where temporary files from multipart uploads are not immediately cleaned up if an error occurs. This delayed cleanup can cause disk space exhaustion leading to denial of service (DoS). The issue affects some older EOL versions as well. Fixed versions are 9.0.110 or later, 10.1.47 or later, and 11.0.12 or later. Join the discussion | GCVE Database | 11/06/2025, 13:00:35 UTC Added: 07/16/2026, 10:40:03 UTC |
0 Improper Resource Shutdown or Release vulnerability in Apache Tomcat. If an error occurred (including exceeding limits) during the processing of a multipart upload, temporary copies of the uploaded parts written to disc were not cleaned up immediately but left for the garbage collection process to delete. Depending on JVM settings, application memory usage and application load, it was possible that space for the temporary copies of uploaded parts would be filled faster than GC cleared it, leading to a DoS. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.11, from 10.1.0-M1 through 10.1.46, from 9.0.0.M1 through 9.0.109. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. Users are recommended to upgrade to version 11.0.12 or later, 10.1.47 or later or 9.0.110 or later which fixes the issue. Join the discussion | CVE Database V5 | 10/27/2025, 17:30:28 UTC Added: 10/27/2025, 17:37:46 UTC |
Showing 1 to 8 of 8 results