CVE-2026-65182 | Apache Tomcat up to 11.0.24 access control (Nessus ID 344996)
A vulnerability was found in Apache Tomcat up to 7.0.109/8.5.100/9.0.120/10.1.57/11.0.24 and classified as critical. Affected is an unknown function. Executing a manipulation can lead to improper access controls.
This vulnerability is registered as CVE-2026-65182. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.