Apache / Tomcat Native
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-29145 | Apache Tomcat, Apache Tomcat Native: OCSP checks sometimes soft-fail even when soft-fail is disabled | CRITICAL | 9.1 | Apr 9, 2026 |
| CVE-2026-24734 | Apache Tomcat Native, Apache Tomcat: OCSP revocation bypass | HIGH | 7.5 | Feb 17, 2026 |
| CVE-2018-8020 | tomcat-native: Mishandled OCSP responses can allow clients to authenticate with revoked certificates | HIGH | 7.4 | Jul 31, 2018 |
| CVE-2018-8019 | tomcat-native: Mishandled OCSP invalid response | HIGH | 7.4 | Jul 31, 2018 |
| CVE-2017-15698 | tomcat-native: Mishandling of client certificates can allow for OCSP check bypass | MEDIUM | 5.9 | Jan 31, 2018 |
Showing 1 to 5 of 5 CVEs