Exploited Apache Tomcat Vulnerability Detected Only 30 Hours After Being Made Public

There has been active exploitation of a security loophole in Apache Tomcat which was recently revealed, just 30 hours after a public demonstration of the proof-of-concept (PoC).

There has been active exploitation of a security loophole in Apache Tomcat which was recently revealed, just 30 hours after a public demonstration of the proof-of-concept (PoC).
This vulnerability, identified as CVE-2025-24813, impacts the following versions:

– Apache Tomcat 11.0.0-M1 to 11.0.2
– Apache Tomcat 10.1.0-M1 to 10.1.34
– Apache Tomcat 9.0.0-M1 to 9.0.98

The issue relates to a

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.