Apache Tomcat Native

3 known vulnerabilities in Apache Tomcat Native, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-86247 CVSS 7.4 high Race condition within a thread vulnerability in Apache Tomcat Native allowed client certificate verification requirements to be…
  • CVE-2026-86246 CVSS 9.1 critical Initialization of a resource with an insecure default vulnerability in Apache Tomcat Native enabled insecure options by default including…
  • CVE-2026-86243 CVSS 7.5 high Buffer over-read vulnerability in Apache Tomcat Native during the TLS handshake permits a malicious user to trigger a DoS via a JVM crash…