Story perspectives
Critical Tomcat Vulnerability: Upgrade Now to Avoid Attacks
7/16/2025
44 7
1 of 1
Story summary
- A critical vulnerability has been discovered in the Tomcat Coyote module, impacting versions 9.0.0-M1 to 11.0.8. This flaw poses a risk of denial-of-service attacks through HTTP/2 stream handling. Users are urged to upgrade to the secure versions (9.0.107, 10.1.43, 11.0.9) to protect their systems, as no active exploits have been detected yet.
