Package Health

org.apache.tomcat.embed:tomcat-embed-core

Core Tomcat implementation

Latest 11.0.24MavenMaven

100%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

97

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Vulnerabilities

TitleVersionsSeverity
CVE-2026-41284
org.apache.tomcat.embed:tomcat-embed-core is vulnerable to Allocation of Resources Without Limits or Throttling in versions 0.0.0 - 9.0.118, 10.1.0-M1 - 10.1.55 and 11.0.0-M1 - 11.0.22.
0.0.0 - 9.0.11810.1.0-M1 - 10.1.5511.0.0-M1 - 11.0.22
High
CVE-2026-43512
org.apache.tomcat.embed:tomcat-embed-core is vulnerable to Improper Authentication in versions 0.0.0 - 9.0.118, 10.1.0-M1 - 10.1.55 and 11.0.0-M1 - 11.0.22.
0.0.0 - 9.0.11810.1.0-M1 - 10.1.5511.0.0-M1 - 11.0.22
Critical
CVE-2026-43513
org.apache.tomcat.embed:tomcat-embed-core is vulnerable to Improper Handling of Case Sensitivity in versions 0.0.0 - 9.0.118, 10.1.0-M1 - 10.1.55 and 11.0.0-M1 - 11.0.22.
0.0.0 - 9.0.11810.1.0-M1 - 10.1.5511.0.0-M1 - 11.0.22
High
CVE-2026-43515
org.apache.tomcat.embed:tomcat-embed-core is vulnerable to Improper Authorization in versions 0.0.0 - 9.0.118, 10.1.0-M1 - 10.1.55 and 11.0.0-M1 - 11.0.22.
0.0.0 - 9.0.11810.1.0-M1 - 10.1.5511.0.0-M1 - 11.0.22
Critical
CVE-2026-43514
org.apache.tomcat.embed:tomcat-embed-core is vulnerable to Observable Timing Discrepancy in versions 0.0.0 - 9.0.118, 10.1.0-M1 - 10.1.55 and 11.0.0-M1 - 11.0.22.
0.0.0 - 9.0.11810.1.0-M1 - 10.1.5511.0.0-M1 - 11.0.22
Low

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
org.apache.tomcat:tomcat-annotations-api
Version 11.0.24

Weekly Downloads

Info

Last Published
1 month ago
Created
10 years ago