ENISA EUVD · EUVD-2025-24559Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2026-2189Dell PowerProtect Data Domain: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell PowerProtect Data Domain ausnutzen, um seine Privilegien zu erhöhen um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um einen Cross-Site Scripting Angriff durchzuführen, um Informationen offenzulegen, und um Dateien zu manipulieren.
Official advisory ↗BSI · German · WID-SEC-2026-0351Dell NetWorker (Third Party Components): Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell NetWorker ausnutzen, um Angriffe zu starten, die die Integrität, Vertraulichkeit und Verfügbarkeit von Systemen beeinträchtigen.
Official advisory ↗BSI · German · WID-SEC-2026-0177Atlassian Bamboo, Bitbucket, Confluence und Jira: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Atlassian Bamboo, Atlassian Bitbucket, Atlassian Confluence und Atlassian Jira ausnutzen, um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, und um einen Cross-Site Scripting Angriff durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2026-0175Oracle Supply Chain: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Supply Chain ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2026-0165Oracle Siebel CRM: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Siebel CRM ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2361Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2360Oracle Communications Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2356Oracle Financial Services Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Financial Services Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2373Oracle Retail Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Retail Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2357Oracle Commerce: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Commerce ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2026-0173Oracle Utilities Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Utilities Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-2853HCL Commerce: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in HCL Commerce ausnutzen, um einen Denial of Service Angriff durchzuführen, um Sicherheitsvorkehrungen zu umgehen, um Daten zu manipulieren, um einen Cross-Site Scripting Angriff durchzuführen, und um Informationen offenzulegen.
Official advisory ↗BSI · German · WID-SEC-2025-1830http/2 Implementierungen: Schwachstelle ermöglicht Denial of ServiceEin entfernter, anonymer Angreifer kann eine Schwachstelle in verschiednen http/2 Implementierungen ausnutzen, um einen Denial of Service Angriff durchzuführen.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0565Multiples vulnérabilités dans les produits Siemensd?id=CVE-2025-39857
Référence CVE CVE-2025-39860
https://www.cve.org/CVERecord?id=CVE-2025-39860
Référence CVE CVE-2025-39864
https://www.cve.org/CVERecord?id=CVE-2025-39864
Référence CVE CVE-2025-39865
https://www.cve.org/CVERecord?id=CVE-2025-39865
Référence CVE CVE-2025-39866
https://www.cve.org/CVERecord?id=CVE-2025-39866
Référence CVE CVE-2025-40300
https://www.cve.org/CVERecord?id=CVE-2025-40300
Référence CVE CVE-2025-40833
https://www.cve.org/CVERecord?id=CVE-2025-40833
Référence CVE CVE-2025-43368
https://www.cve.org/CVERecord?id=CVE-2025-43368
Référence CVE CVE-2025-47219
https://www.cve.org/CVERecord?id=CVE-2025-47219
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-53057
https://www.cve.org/CVERecord?id=CVE-2025-53057
Référence CVE CVE-2025-53066
https://www.cve.org/CVERecord?id=CVE-2025-53066
Référence CVE CVE-2025-55752
https://www.cve.org/CVERecord?id=CVE-2025-55752
Référence CVE CVE-2025-55754
https://www.cve.org/CVERecord?id=CVE-2025-55754
Référence CVE CVE-2025-6021
https://www.cve.org/CVERecord?id=CVE-2025-6021
Référence CVE CVE-2025-6052
https://www.cve.org/CVERecord?id=CVE-2025-6052
Référence CVE CVE-2025-61748
https://www.cve.org/CVERecord?id=CVE-2025-61748
Référence CVE CVE-2025-61795
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0322Multiples vulnérabilités dans les produits VMwared?id=CVE-2025-15281
Référence CVE CVE-2025-22228
https://www.cve.org/CVERecord?id=CVE-2025-22228
Référence CVE CVE-2025-22235
https://www.cve.org/CVERecord?id=CVE-2025-22235
Référence CVE CVE-2025-31650
https://www.cve.org/CVERecord?id=CVE-2025-31650
Référence CVE CVE-2025-31651
https://www.cve.org/CVERecord?id=CVE-2025-31651
Référence CVE CVE-2025-46701
https://www.cve.org/CVERecord?id=CVE-2025-46701
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-48976
https://www.cve.org/CVERecord?id=CVE-2025-48976
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49124
https://www.cve.org/CVERecord?id=CVE-2025-49124
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-52434
https://www.cve.org/CVERecord?id=CVE-2025-52434
Référence CVE CVE-2025-52520
https://www.cve.org/CVERecord?id=CVE-2025-52520
Référence CVE CVE-2025-53506
https://www.cve.org/CVERecord?id=CVE-2025-53506
Référence CVE CVE-2025-55668
https://www.cve.org/CVERecord?id=CVE-2025-55668
Référence CVE CVE-2025-55752
https://www.cve.org/CVERecord?id=CVE-2025-55752
Référence CVE CVE-2025-55754
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0281Multiples vulnérabilités dans les produits Splunkd?id=CVE-2025-47912
Référence CVE CVE-2025-47913
https://www.cve.org/CVERecord?id=CVE-2025-47913
Référence CVE CVE-2025-47914
https://www.cve.org/CVERecord?id=CVE-2025-47914
Référence CVE CVE-2025-48071
https://www.cve.org/CVERecord?id=CVE-2025-48071
Référence CVE CVE-2025-48072
https://www.cve.org/CVERecord?id=CVE-2025-48072
Référence CVE CVE-2025-48073
https://www.cve.org/CVERecord?id=CVE-2025-48073
Référence CVE CVE-2025-48074
https://www.cve.org/CVERecord?id=CVE-2025-48074
Référence CVE CVE-2025-48964
https://www.cve.org/CVERecord?id=CVE-2025-48964
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-50059
https://www.cve.org/CVERecord?id=CVE-2025-50059
Référence CVE CVE-2025-50106
https://www.cve.org/CVERecord?id=CVE-2025-50106
Référence CVE CVE-2025-52520
https://www.cve.org/CVERecord?id=CVE-2025-52520
Référence CVE CVE-2025-53040
https://www.cve.org/CVERecord?id=CVE-2025-53040
Référence CVE CVE-2025-53042
https://www.cve.org/CVERecord?id=CVE-2025-53042
Référence CVE CVE-2025-53044
https://www.cve.org/CVERecord?id=CVE-2025-53044
Référence CVE CVE-2025-53045
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0112Multiples vulnérabilités dans les produits VMwareecord?id=CVE-2025-41249
Référence CVE CVE-2025-4673
https://www.cve.org/CVERecord?id=CVE-2025-4673
Référence CVE CVE-2025-4674
https://www.cve.org/CVERecord?id=CVE-2025-4674
Référence CVE CVE-2025-47906
https://www.cve.org/CVERecord?id=CVE-2025-47906
Référence CVE CVE-2025-47907
https://www.cve.org/CVERecord?id=CVE-2025-47907
Référence CVE CVE-2025-47910
https://www.cve.org/CVERecord?id=CVE-2025-47910
Référence CVE CVE-2025-47912
https://www.cve.org/CVERecord?id=CVE-2025-47912
Référence CVE CVE-2025-47914
https://www.cve.org/CVERecord?id=CVE-2025-47914
Référence CVE CVE-2025-48060
https://www.cve.org/CVERecord?id=CVE-2025-48060
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-52565
https://www.cve.org/CVERecord?id=CVE-2025-52565
Référence CVE CVE-2025-52881
https://www.cve.org/CVERecord?id=CVE-2025-52881
Référence CVE CVE-2025-53057
https://www.cve.org/CVERecord?id=CVE-2025-53057
Référence CVE CVE-2025-53066
https://www.cve.org/CVERecord?id=CVE-2025-53066
Référence CVE CVE-2025-53547
https://www.cve.org/CVERecord?id=CVE-2025-53547
Référence CVE CVE-2025-54388
https://www.cve.org/CVERecord?id=CVE-2025-54388
Référence CVE CVE-2025-54410
https://www.cve.org/CVERecord?id=CVE-2025-54410
Référence CVE CVE-2025-55198
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwareERecord?id=CVE-2025-47910
Référence CVE CVE-2025-4802
https://www.cve.org/CVERecord?id=CVE-2025-4802
Référence CVE CVE-2025-48060
https://www.cve.org/CVERecord?id=CVE-2025-48060
Référence CVE CVE-2025-48734
https://www.cve.org/CVERecord?id=CVE-2025-48734
Référence CVE CVE-2025-4877
https://www.cve.org/CVERecord?id=CVE-2025-4877
Référence CVE CVE-2025-4878
https://www.cve.org/CVERecord?id=CVE-2025-4878
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-48964
https://www.cve.org/CVERecord?id=CVE-2025-48964
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49014
https://www.cve.org/CVERecord?id=CVE-2025-49014
Référence CVE CVE-2025-49124
https://www.cve.org/CVERecord?id=CVE-2025-49124
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-49146
https://www.cve.org/CVERecord?id=CVE-2025-49146
Référence CVE CVE-2025-4947
https://www.cve.org/CVERecord?id=CVE-2025-4947
Référence CVE CVE-2025-49794
https://www.cve.org/CVERecord?id=CVE-2025-49794
Référence CVE CVE-2025-49795
https://www.cve.org/CVERecord?id=CVE-2025-49795
Référence CVE CVE-2025-49796
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0967Multiples vulnérabilités dans les produits VMware/CVERecord?id=CVE-2025-4435
Référence CVE CVE-2025-4516
https://www.cve.org/CVERecord?id=CVE-2025-4516
Référence CVE CVE-2025-4517
https://www.cve.org/CVERecord?id=CVE-2025-4517
Référence CVE CVE-2025-46551
https://www.cve.org/CVERecord?id=CVE-2025-46551
Référence CVE CVE-2025-4673
https://www.cve.org/CVERecord?id=CVE-2025-4673
Référence CVE CVE-2025-4674
https://www.cve.org/CVERecord?id=CVE-2025-4674
Référence CVE CVE-2025-47906
https://www.cve.org/CVERecord?id=CVE-2025-47906
Référence CVE CVE-2025-47907
https://www.cve.org/CVERecord?id=CVE-2025-47907
Référence CVE CVE-2025-47910
https://www.cve.org/CVERecord?id=CVE-2025-47910
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49014
https://www.cve.org/CVERecord?id=CVE-2025-49014
Référence CVE CVE-2025-50059
https://www.cve.org/CVERecord?id=CVE-2025-50059
Référence CVE CVE-2025-50077
https://www.cve.org/CVERecord?id=CVE-2025-50077
Référence CVE CVE-2025-50078
https://www.cve.org/CVERecord?id=CVE-2025-50078
Référence CVE CVE-2025-50079
https://www.cve.org/CVERecord?id=CVE-2025-50079
Référence CVE CVE-2025-50080
https://www.cve.org/CVERecord?id=CVE-2025-50080
Référence CVE CVE-2025-50082
https://www.cve.org/CVERecord?id=CVE-2025-50082
Référence CVE CVE-2025-50083
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0947Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-30754
Référence CVE CVE-2025-30761
https://www.cve.org/CVERecord?id=CVE-2025-30761
Référence CVE CVE-2025-36007
https://www.cve.org/CVERecord?id=CVE-2025-36007
Référence CVE CVE-2025-36137
https://www.cve.org/CVERecord?id=CVE-2025-36137
Référence CVE CVE-2025-38211
https://www.cve.org/CVERecord?id=CVE-2025-38211
Référence CVE CVE-2025-38332
https://www.cve.org/CVERecord?id=CVE-2025-38332
Référence CVE CVE-2025-38464
https://www.cve.org/CVERecord?id=CVE-2025-38464
Référence CVE CVE-2025-38477
https://www.cve.org/CVERecord?id=CVE-2025-38477
Référence CVE CVE-2025-40909
https://www.cve.org/CVERecord?id=CVE-2025-40909
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-50059
https://www.cve.org/CVERecord?id=CVE-2025-50059
Référence CVE CVE-2025-50106
https://www.cve.org/CVERecord?id=CVE-2025-50106
Référence CVE CVE-2025-54389
https://www.cve.org/CVERecord?id=CVE-2025-54389
Référence CVE CVE-2025-58754
https://www.cve.org/CVERecord?id=CVE-2025-58754
Référence CVE CVE-2025-7783
https://www.cve.org/CVERecord?id=CVE-2025-7783
Référence CVE CVE-2025-8058
https://www.cve.org/CVERecord?id=CVE-2025-8058
Référence CVE CVE-2025-8713
https://www.cve.org/CVERecord?id=CVE-2025-8713
Référence CVE CVE-2025-8714
https://www.cve.org/CVERecord?id=CVE-202
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0903Multiples vulnérabilités dans les produits AtlassianDe multiples vulnérabilités ont été découvertes dans les produits Atlassian. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à l'intégrité des données et un contournement de la politique de sécurité.
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0896Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-46392
Référence CVE CVE-2025-46548
https://www.cve.org/CVERecord?id=CVE-2025-46548
Référence CVE CVE-2025-46653
https://www.cve.org/CVERecord?id=CVE-2025-46653
Référence CVE CVE-2025-47273
https://www.cve.org/CVERecord?id=CVE-2025-47273
Référence CVE CVE-2025-47278
https://www.cve.org/CVERecord?id=CVE-2025-47278
Référence CVE CVE-2025-48387
https://www.cve.org/CVERecord?id=CVE-2025-48387
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-48976
https://www.cve.org/CVERecord?id=CVE-2025-48976
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-48997
https://www.cve.org/CVERecord?id=CVE-2025-48997
Référence CVE CVE-2025-49005
https://www.cve.org/CVERecord?id=CVE-2025-49005
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-49826
https://www.cve.org/CVERecord?id=CVE-2025-49826
Référence CVE CVE-2025-50059
https://www.cve.org/CVERecord?id=CVE-2025-50059
Référence CVE CVE-2025-50106
https://www.cve.org/CVERecord?id=CVE-2025-50106
Référence CVE CVE-2025-50181
https://www.cve.org/CVERecord?id=CVE-2025-50181
Référence CVE CVE-2025-50182
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0756Multiples vulnérabilités dans les produits VMwareERecord?id=CVE-2025-47907
Référence CVE CVE-2025-4802
https://www.cve.org/CVERecord?id=CVE-2025-4802
Référence CVE CVE-2025-48060
https://www.cve.org/CVERecord?id=CVE-2025-48060
Référence CVE CVE-2025-48734
https://www.cve.org/CVERecord?id=CVE-2025-48734
Référence CVE CVE-2025-4877
https://www.cve.org/CVERecord?id=CVE-2025-4877
Référence CVE CVE-2025-4878
https://www.cve.org/CVERecord?id=CVE-2025-4878
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-48964
https://www.cve.org/CVERecord?id=CVE-2025-48964
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49124
https://www.cve.org/CVERecord?id=CVE-2025-49124
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-49146
https://www.cve.org/CVERecord?id=CVE-2025-49146
Référence CVE CVE-2025-4918
https://www.cve.org/CVERecord?id=CVE-2025-4918
Référence CVE CVE-2025-4919
https://www.cve.org/CVERecord?id=CVE-2025-4919
Référence CVE CVE-2025-49709
https://www.cve.org/CVERecord?id=CVE-2025-49709
Référence CVE CVE-2025-49710
https://www.cve.org/CVERecord?id=CVE-2025-49710
Référence CVE CVE-2025-49794
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0754Multiples vulnérabilités dans les produits VMwareERecord?id=CVE-2025-31651
Référence CVE CVE-2025-41242
https://www.cve.org/CVERecord?id=CVE-2025-41242
Référence CVE CVE-2025-4517
https://www.cve.org/CVERecord?id=CVE-2025-4517
Référence CVE CVE-2025-46701
https://www.cve.org/CVERecord?id=CVE-2025-46701
Référence CVE CVE-2025-4673
https://www.cve.org/CVERecord?id=CVE-2025-4673
Référence CVE CVE-2025-4674
https://www.cve.org/CVERecord?id=CVE-2025-4674
Référence CVE CVE-2025-48734
https://www.cve.org/CVERecord?id=CVE-2025-48734
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-48988
https://www.cve.org/CVERecord?id=CVE-2025-48988
Référence CVE CVE-2025-48989
https://www.cve.org/CVERecord?id=CVE-2025-48989
Référence CVE CVE-2025-49125
https://www.cve.org/CVERecord?id=CVE-2025-49125
Référence CVE CVE-2025-52434
https://www.cve.org/CVERecord?id=CVE-2025-52434
Référence CVE CVE-2025-52999
https://www.cve.org/CVERecord?id=CVE-2025-52999
Référence CVE CVE-2025-54410
https://www.cve.org/CVERecord?id=CVE-2025-54410
Référence CVE CVE-2025-55163
https://www.cve.org/CVERecord?id=CVE-2025-55163
Référence CVE CVE-2025-6020
https://www.cve.org/CVERecord?id=CVE-2025-6020
Référence CVE CVE-2025-6965
https://www.cve.org/CVERecord?id=CVE-2025-6965
Référence CVE CVE-2025-7425
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0694Vulnérabilité dans Apache TomcatUne vulnérabilité a été découverte dans Apache Tomcat. Elle permet à un attaquant de provoquer un déni de service à distance.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2025-011764Apache Software Foundation の Apache Tomcat におけるリソースの不適切なシャットダウンおよびリリースに関する脆弱性Apache Software Foundation の Apache Tomcat には、リソースの不適切なシャットダウンおよびリリースに関する脆弱性が存在します。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-6562HTTP2 보안 주의 권고Apache Tomcat의 HTTP/2에서 발생하는 서비스 거부 취약점(CVE-2025-48989) [2][8]
Official advisory ↗NCSC-NL · Dutch · NCSC-2026-0147Kwetsbaarheden verholpen in Siemens-productenApache Tomcat versions 9.0.0.M1 to 11.0.9 are vulnerable to the MadeYouReset denial of service attack exploiting improper HTTP/2 stream resets, with multiple updates released to address this and other related security and stability issues.
Official advisory ↗NCSC-NL · Dutch · NCSC-2026-0034Kwetsbaarheden verholpen in Atlassian productenRecent updates for Apache Tomcat versions 9, 10, and 11 address the 'MadeYouReset' DoS vulnerability and other issues, with specific versions being susceptible to Denial of Service attacks from malformed client requests.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0333Kwetsbaarheden verholpen in Oracle Financial ServicesRecent updates for Apache Tomcat versions 9, 10, and 11 address the 'MadeYouReset' DoS vulnerability in HTTP/2, along with various enhancements to components like Catalina and Coyote.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0330Kwetsbaarheden verholpen in Oracle Communications productenRecent updates for Apache Tomcat versions 9, 10, and 11 address the 'MadeYouReset' DoS vulnerability in HTTP/2, along with various enhancements to components like Catalina and Coyote.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0329Kwetsbaarheden verholpen in Oracle CommerceRecent updates for Apache Tomcat versions 9, 10, and 11 address the 'MadeYouReset' DoS vulnerability in HTTP/2, along with various enhancements to components like Catalina and Coyote.
Official advisory ↗