logo

New Apache Tomcat Vulnerabilities Let Attackers Execute Remote Code

ID: 45680330-6378-532a-ae6a-9159e8016803

STIX ID: report--45680330-6378-532a-ae6a-9159e8016803

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2024-12-18

Date Updated: 2026-04-21

Author: Guru Baran

...
...

**Executive Summary:** Two security flaws were disclosed in Apache Tomcat: an Important-rated race condition (CVE-2024-50379) that can allow remote code execution when specific configuration and filesystem conditions are met, and a Low-rated vulnerability (CVE-2024-54677) in bundled example applications that can trigger an OutOfMemoryError and denial of service; Tomcat maintainers have released patches and advise immediate upgrades to the specified patched versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.