RHSA-2025:14178HighCVSS 7.5

Red Hat Security Advisory: tomcat9 security update

Published
August 20, 2025
Last Modified
June 25, 2026

🔗 CVE IDs covered (7)

📋 Description

CVE-2025-48976 — apache-commons-fileupload: Apache Commons FileUpload DoS via part headers CVE-2025-48988 — tomcat: Apache Tomcat DoS in multipart upload CVE-2025-48989 — tomcat: http/2 "MadeYouReset" DoS attack through HTTP/2 control frames CVE-2025-49125 — tomcat: Apache Tomcat: Security constraint bypass for pre/post-resources CVE-2025-52434 — tomcat: Apache Tomcat denial of service CVE-2025-52520 — tomcat: Apache Tomcat denial of service CVE-2025-53506 — tomcat: Apache Tomcat denial of service

🔗 References (10)