Generation of Error Message Containing Sensitive Information in org.apache.tomcat.embed:tomcat-embed-core
CVE-2024-21733
- org.apache.tomcat.embed:tomcat-embed-core
- org.apache.tomcat.experimental:tomcat-embed-programmatic
- org.apache.tomcat:tomcat-coyote
Summary
Generation of Error Message Containing Sensitive Information vulnerability in Apache Tomcat. This issue affects the Apache Tomcat versions 8.5.7 through 8.5.63, 9.0.0-M11 through 9.0.43, and 10.0.0-M1 through 10.0.2.
- LOW
- NETWORK
- NONE
- UNCHANGED
- NONE
- NONE
- LOW
- NONE
CWE-209 - Generation of Error Message Containing Sensitive Information
The software generates an error message that includes sensitive information about its environment, users, or associated data.
References
Advisory Timeline
- Published