HIGHVulnerability
Verified
Global
CISA KEV: Apache Tomcat — Apache Tomcat Missing Encryption of Sensitive Data Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Apache Tomcat contains a missing encryption of sensitive data vulnerability that allows the bypass of the EncryptInterceptor.
Analysis
Apache Tomcat contains a missing encryption of sensitive data vulnerability that allows the bypass of the EncryptInterceptor. Added to CISA Known Exploited Vulnerabilities catalog on 2026-08-04. Remediation due: 2026-08-07.