THEVOS
Security Recommendation

Apache Tomcat July Security Update Advisory

By thevos· 2026-07-24 ·1 min read ·442
Apache Tomcat July Security Update Advisory

Apache Tomcat has released a security update that addresses vulnerabilities in the product. Users of the affected product are advised to update to the latest version.

Affected Products


  • Apache Tomcat 9.0.13 – 9.0.119.
  • Apache Tomcat 9.0.0.M1 – 9.0.119.
  • Apache Tomcat 11.0.0-M1 – 11.0.23.
  • Apache Tomcat 10.1.0-M1 – 10.1.56.

Resolved Vulnerabilities


  • CVE-2026-59084. A vulnerability in Apache Tomcat, EncryptInterceptor requirements not clearly documented, rated CVSS 9.1.
  • CVE-2026-59083. A vulnerability in Apache Tomcat, Incorrect URL decoding in RewriteValve may allow security control bypass, rated CVSS 9.1.

Patch Information


In accordance with the security advisory published on July 15, 2026, the following versions have been released as updates.

  • Apache Tomcat 9.0.120.
  • Apache Tomcat 11.0.24.
  • Apache Tomcat 10.1.57.

References


Share LINE X Facebook

Comments (0)

No comments yet. Be the first to comment.

Related posts

THEVOS
Home Home Services Website Creation Web Hosting Email Service Domain Service Solutions VosCMS Solution Shopping Solution TMS Solution AI Hanes Solution Reservation Solution Nightlife Business Matching Solution Community Notice Free Board Q&A FAQ Showcase Blog Contact Us
Login Register