Apache Tomcat CVE-2023-28709

XMLWordPrintable

    • 3
    • Severity 2 - Major

      Issue summary

      Apache Tomcat should be upgraded to 9.0.74 or a later version to fix CVE-2023-28709

      Environment

      • Bitbucket 8.10.x and 8.11

      Steps to Reproduce

      • Check the Apache Tomcat version on pom.xml 

      Expected Results

      • Bitbucket 8.10 and 8.11: apache-tomcat 9.0.74 and later

      Actual Results

      • Bitbucket 8.10: apache-tomcat-9.0.73 and earlier
      • Bitbucket 8.11: apache-tomcat-9.0.73 and earlier

            Assignee:
            Christopher Kochovski
            Reporter:
            Luiz Elias (Inactive)
            Votes:
            1 Vote for this issue
            Watchers:
            9 Start watching this issue

              Created:
              Updated:
              Resolved: