Package Health

org.apache.tomcat:tomcat-coyote

Tomcat Connectors and HTTP parser

Latest 11.0.24MavenMaven

100%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-574288 New
tomcat-coyote is vulnerable to Improper Input Validation in versions 9.0.115 - 9.0.120, 10.1.53 - 10.1.57 and 11.0.20 - 11.0.24.
9.0.115 - 9.0.12010.1.53 - 10.1.5711.0.20 - 11.0.24
Medium
AIKIDO-2026-992854 New
tomcat-coyote is vulnerable to Denial of Service in versions 8.5.59 - 9.0.120, 10.1.0 - 10.1.57 and 11.0.0 - 11.0.24.
8.5.59 - 9.0.12010.1.0 - 10.1.5711.0.0 - 11.0.24
High
CVE-2026-24880
org.apache.tomcat:tomcat-coyote is vulnerable to Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') in versions 7.0.0 - 9.0.116, 10.1.0-M1 - 10.1.52 and 11.0.0-M1 - 11.0.18.
7.0.0 - 9.0.11610.1.0-M1 - 10.1.5211.0.0-M1 - 11.0.18
High
CVE-2026-24734
org.apache.tomcat:tomcat-coyote is vulnerable to Improper Input Validation in versions 11.0.0-M1 - 11.0.18, 10.1.0-M7 - 10.1.52 and 9.0.83 - 9.0.115.
9.0.83 - 9.0.11510.1.0-M7 - 10.1.5211.0.0-M1 - 11.0.18
High
CVE-2026-24733
org.apache.tomcat:tomcat-coyote is vulnerable to Improper Input Validation in versions 11.0.0-M1 - 11.0.15, 10.1.0-M1 - 10.1.50 and 0.0.0 - 9.0.113.
0.0.0 - 9.0.11310.1.0-M1 - 10.1.5011.0.0-M1 - 11.0.15
Low

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
org.apache.tomcat:tomcat-servlet-api
Version 11.0.24
org.apache.tomcat:tomcat-jni
Version 11.0.24
org.apache.tomcat:tomcat-juli
Version 11.0.24
org.apache.tomcat:tomcat-util
Version 11.0.24

Weekly Downloads

Info

Last Published
2 months ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform