4 Total advisories
4 Vulnerabilities
0 Malware
Dependency scanning
Check whether org.apache.tomcat:tomcat-util is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.3
CVE-2023-42795
Apache Tomcat Incomplete Cleanup vulnerability
HIGH 7.5
CVE-2016-8745
Concurrent Execution using Shared Resource with Improper Synchronization in Apache Tomcat
UNKNOWN
CVE-2014-0099
Improper Neutralization of CRLF Sequences in HTTP Headers in Apache Tomcat
HIGH 7.5
CVE-2022-45143
Apache Tomcat improperly escapes input from JsonErrorReportValve
Browse more Maven advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes