- Resolves: RHEL-219561 Security constraint bypass via improper URL encoding in rewrite valve (CVE-2026-59083) - Resolves: RHEL-219581 Insufficient documentation for EncryptInterceptor may lead to insecure configurations (CVE-2026-59084) - Resolves: RHEL-238206 tomcat: Information disclosure due to HTTP Authentication Header exposure during WebSocket authentication (CVE-2026-42498) - Resolves: RHEL-238213 tomcat: Improper Handling of Case Sensitivity in LockOutRealm (CVE-2026-43513) - Resolves: RHEL-238260 tomcat: Improper Authorization allows security bypass (CVE-2026-43515) - Resolves: RHEL-238294 tomcat: Authentication bypass via digest authentication (CVE-2026-43512) - Resolves: RHEL-239018 tomcat: Apache Tomcat: Authentication bypass via missing critical step in JNDIRealm GSSAPI configuration (CVE-2026-55957)
14 lines
462 B
Plaintext
14 lines
462 B
Plaintext
/apache-tomcat-9.0.62-src.tar.gz
|
|
/tomcat-9.0.62.redhat-00013.tar.gz
|
|
/tomcat-9.0.62.redhat-00014-src.zip
|
|
/tomcat-9.0.62.redhat-00017-src.zip
|
|
/tomcat-9.0.62.redhat-00018-src.zip
|
|
/tomcat-9.0.87.redhat-00003-src.zip
|
|
/tomcat-9.0.87.redhat-00005-src.zip
|
|
/tomcat-9.0.87.redhat-00008-src.zip
|
|
/tomcat-9.0.87.redhat-00010-src.zip
|
|
/tomcat-9.0.87.redhat-00011-src.zip
|
|
/tomcat-9.0.87.redhat-00012-src.zip
|
|
/tomcat-9.0.87.redhat-00013-src.zip
|
|
/apache-tomcat-9.0.120-src.tar.gz
|