VYPR
Medium severity5.3NVD Advisory· Published Jan 19, 2024· Updated Jun 17, 2026

CVE-2024-21733

CVE-2024-21733

Description

Generation of Error Message Containing Sensitive Information vulnerability in Apache Tomcat.This issue affects Apache Tomcat: from 8.5.7 through 8.5.63, from 9.0.0-M11 through 9.0.43. Other, EOL versions may also be affected.

Users are recommended to upgrade to version 8.5.64 onwards or 9.0.44 onwards, which contain a fix for the issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.tomcat:tomcat-coyoteMaven
>= 9.0.0-M11, < 9.0.449.0.44
org.apache.tomcat.embed:tomcat-embed-coreMaven
>= 8.5.7, < 8.5.648.5.64
org.apache.tomcat.embed:tomcat-embed-coreMaven
>= 9.0.0-M11, < 9.0.449.0.44
org.apache.tomcat:tomcat-coyoteMaven
>= 8.5.7, < 8.5.648.5.64
org.apache.tomcat.experimental:tomcat-embed-programmaticMaven
>= 9.0.43, < 9.0.449.0.44

Affected products

26

Patches

Vulnerability mechanics

References

12

News mentions

0

No linked articles in our index yet.