Apache Tomcat security advisory (AV25-354)

Introduction to Malware Binary Triage (IMBT) Course

Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.

Enroll Now and Save 10%: Coupon Code MWNEWS10

Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.

  <div>
<div>
        <div><p><strong>Serial number: </strong>AV25-354<br /><strong>Date: </strong>June&nbsp;18, 2025</p>

On June 16, 2025, Apache published a security advisory to address a vulnerability in the following products:

  • Apache Tomcat – versions 11.0.0-M1 to 11.0.7
  • Apache Tomcat – versions 10.1.0-M1 to 10.1.41
  • Apache Tomcat – versions 9.0.0.M1 to 9.0.105

The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.

</div>

Article Link: https://cyber.gc.ca/en/alerts-advisories/apache-tomcat-security-advisory-av25-354