Skip to content
CVSS 9.1 · CRITICAL

CVE-2026-65182Bypass de seguridad en Apache Tomcat

Improper Access Control, Incorrect Authorization vulnerability in Apache Tomcat leads to security constraint bypass if a constraint for a longer path is specified before a more restrictive constraint for a shorter sub-path. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.24, from 10.1.0-M1 through 10.1.57, from 9.0.0.M1 through 9.0.120, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.25, 10.1.58, 9.0.121, which fixes the issue.

Ver en NVD

Análisis

Apache Tomcat versions across all major branches (7.0 through 11.0) are vulnerable to a security constraint bypass. Attackers can access protected URL paths if the server configuration orders constraints in a specific way, potentially exposing sensitive endpoints or administrative interfaces.

Roles relevantes

BackendJavaCloudDockerLinuxciberseguridad

Severidad

Puntaje: 9.1(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: NONE
Tipo de falla (CWE): CWE-284CWE-863

EPSS

Probabilidad de explotación (próx. 30 días): 0.0023 (0.2%)
Percentil: 13.1%
EPSS: 2026-08-26

Descripción técnica

Improper Access Control, Incorrect Authorization vulnerability in Apache Tomcat leads to security constraint bypass if a constraint for a longer path is specified before a more restrictive constraint for a shorter sub-path. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.24, from 10.1.0-M1 through 10.1.57, from 9.0.0.M1 through 9.0.120, from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Users are recommended to upgrade to version 11.0.25, 10.1.58, 9.0.121, which fixes the issue.

Publicada: 25/8/2026, 22:17:04
Última modificación: 26/8/2026, 16:45:12

Referencias

InicioEventosBlogRecursosCursosEquipo